ezequielpereira / GAE-RCELinks
Google App Engine - Remote Code Execution bug ($36k bug bounty)
☆151Updated 7 years ago
Alternatives and similar repositories for GAE-RCE
Users that are interested in GAE-RCE are comparing it to the libraries listed below
Sorting:
- A list of publicly known but unfixed security bugs☆237Updated 7 years ago
- The challenge source code and solutions for FBCTF 2019☆201Updated last year
- X41 Browser Security White Paper - Tools and PoCs☆184Updated 7 years ago
- ☆166Updated 6 years ago
- Chrome < 62 uxss exploit (CVE-2017-5124)☆161Updated 7 years ago
- psychoPATH - hunting file uploads & LFI in the dark. This tool is a customisable payload generator designed for blindly detecting LFI & w…☆141Updated 8 years ago
- Demonstrating that disabling ICC in docker does not block raw packets between containers.☆65Updated 7 years ago
- ☆233Updated 6 years ago
- ☆269Updated 2 years ago
- An information gathering tool to collect git commit emails in version control host services☆154Updated 6 years ago
- Simple test for the May 2016 OpenSSL padding oracle (CVE-2016-2107)☆190Updated 6 years ago
- Authenticate against a MySQL server without knowing the cleartext password☆227Updated 3 years ago
- A Pwn2Own exploit chain☆761Updated 6 years ago
- One-click utility to test race conditions☆165Updated 7 years ago
- IOHIDFamily 0day☆443Updated 2 years ago
- Linux ELF x32/x64 ASLR DEP/NX bypass exploit with stack-spraying☆301Updated 2 years ago
- TLS Redirection☆120Updated 7 years ago
- A database of published security advisories reported by the Programa STIC Team at Fundación Sadosky☆87Updated 8 years ago
- Code and slides for Zer0Con 2018 talk: Building a 1-day Exploit for Google Chrome☆157Updated 7 years ago
- Some simple go tools to perform a Man-in-the-middle (MITM) attack on your IMAP server in case you forgot your password.☆65Updated 6 years ago
- Street Party is a suite of tools that allows the RTP streams of video conferencing implementations to be viewed and modified.☆243Updated 5 years ago
- BSidesSF CTF 2017 release☆126Updated 3 years ago
- collection of verified Linux kernel exploits☆187Updated 4 years ago
- A visual fuzzer written in NodeJS to find Zalgo characters☆53Updated 7 years ago
- ☆48Updated 6 years ago
- Proof of concept of LibreOffice remote arbitrary file disclosure vulnerability☆95Updated 7 years ago
- CURRYFINGER - SNI & Host header spoofing utility.☆109Updated 5 years ago
- A tool to surface security issues in python code☆226Updated 8 years ago
- ☆114Updated 7 years ago
- ☆25Updated 7 years ago