evilsocket / jscythe
Abuse the node.js inspector mechanism in order to force any node.js/electron/v8 based process to execute arbitrary javascript code.
☆324Updated 4 months ago
Alternatives and similar repositories for jscythe:
Users that are interested in jscythe are comparing it to the libraries listed below
- Intercept stdin/stdout/stderr for any process☆198Updated 2 years ago
- Take over macOS Electron apps' TCC permissions☆198Updated last year
- Checks all maintainers of all NPM and Pypi packages for hijackable packages through domain re-registration☆291Updated this week
- A crossplatform mDNS enumeration tool.☆345Updated 2 years ago
- ☆201Updated 3 months ago
- ulexecve is a userland execve() implementation which helps you execute arbitrary ELF binaries on Linux from userland without the binaries…☆183Updated last year
- Execute ELF files without dropping them on disk☆487Updated 7 months ago
- This repo contains write ups of vulnerabilities I've found and exploits I've publicly developed.☆143Updated 2 years ago
- A bash script that automates the exfiltration of data over dns in case we have blind command execution on a server with egress filtering☆209Updated 4 years ago
- d(ockerp)wn - a docker pwn tool manager☆155Updated 3 years ago
- Blazing fast, advanced Padding Oracle exploit☆241Updated 8 months ago
- A curated list of awesome browser security learning material.☆138Updated 2 years ago
- Coverage-based fuzzer for python applications☆233Updated 2 years ago
- CQ, a code security scanner☆98Updated 8 months ago
- Find CVE PoCs on GitHub☆142Updated last year
- This repository includes code and IoCs that are the product of research done in Akamai's various security research teams.☆484Updated last month
- List of Trusted Types bypasses☆86Updated 9 months ago
- Electron Research☆70Updated 2 years ago
- ☆115Updated last year
- One-stop TLS traffic inspection and manipulation using dynamic instrumentation☆240Updated 2 years ago
- Minimal code to connect to a CEF debugger.☆201Updated 4 years ago
- Generate a bunch of malicious pdf files with phone-home functionality. Can be used with Burp Collaborator☆169Updated 3 years ago
- A fast and secure multi protocol honeypot.☆313Updated 2 years ago
- Golang reverse/bind shell generator☆228Updated 3 years ago
- CVE-2022-0995 exploit☆496Updated 2 years ago
- A structure-aware HTTP fuzzing library☆210Updated last month
- A web client port-scanner written in GO, that supports the WASM/WASI interface for Browser WebAssembly runtime execution.☆142Updated last year
- golang implementation of fonetic (https://github.com/s0md3v/fonetic)☆37Updated 2 years ago
- 🎩 🤟🏻 [P1-$10,000] Google Chrome, Microsoft Edge and Opera - vulnerability reported by Maciej Pulikowski - System environment variables…☆330Updated 2 years ago
- A high performance TCP SYN port scanner.☆312Updated 10 months ago