ewilded / SCARY
PHP Source Code Analyzer written in Perl (taint checking)
☆18Updated 4 years ago
Alternatives and similar repositories for SCARY:
Users that are interested in SCARY are comparing it to the libraries listed below
- Python Implementation of a .NET Padding Oracle Assessment Tool☆30Updated 9 years ago
- Modified version of ActiveScan++ Burp Suite extension☆31Updated 8 years ago
- Axis2 RPC Shell☆15Updated 9 years ago
- PHDAYS |||☆17Updated 11 years ago
- Mixing up CVE and MS like a pro☆24Updated 7 years ago
- Here comes the paintrain!☆11Updated 8 years ago
- TLS SNI virtual hosts bruteforcer☆21Updated 10 years ago
- Payload generator for Java Binary Deserialization attack with Commons FileUpload (CVE-2013-2186)☆39Updated 8 years ago
- Parse X509 certificates to get the (sub)domains in it.☆28Updated 6 years ago
- Burp plugin to do random fuzzing of HTTP requests☆33Updated 8 years ago
- Burp and ZAP plugin that display image metadata (JPEG Exif or PNG text chunk).☆14Updated last year
- Spray SMB with hashes, Then psexec☆32Updated 5 years ago
- Faraday Workspaces for Bug Bounties☆20Updated 9 years ago
- Generate pentest reports based on github issues.☆17Updated 2 years ago
- A C# web handler that is vulnerable to XXE with PoC. This is to serve as an example of what vulnerable C# code looks like.☆26Updated 11 years ago
- BurpSuite extension to assist with Automated Forced Browsing/Endpoint Enumeration☆22Updated 6 years ago
- Materials related to the 2017 BSides Las Vegas presentation☆51Updated 4 years ago
- A Burp Extender plugin, that will deserialized java objects and encode them in XML using the Xtream library.☆25Updated 9 years ago
- Pentest Scripts for Apache Vulnerabilities☆31Updated 7 years ago
- Windows LNK/URL shortcut auto-binding hotkey (not a bug, feature)☆30Updated 6 years ago
- A BurpSuite extension for lair☆28Updated 7 years ago
- Of the thousands of lazy reconnaissance scripts, this one is by far the one in this repository.☆11Updated 3 years ago
- XXE attack tool☆31Updated 8 years ago
- An adaptive, intelligent XSS fuzzer that learns how the response is reflected and carefully crafts an XSS payload to match☆42Updated 12 years ago
- Study about HQL injection exploitation.☆50Updated 8 years ago
- Script to find exploitable magic methods for PHP object injection☆27Updated 10 years ago
- REST/JSON interface to Burp Suite☆33Updated 4 years ago
- XXE OOB Exploitation Toolset for Automation☆63Updated 11 years ago
- This script generate backdoor code which log username password of an user who have passed HTTP basic auth using LDAP credentials.☆58Updated 7 years ago
- This module is used to exploit startup script execution through Windows Group Policy settings when configured to run off of a remote SMB …☆22Updated 5 years ago