federicodotta / ysoserialLinks
A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.
☆43Updated 5 years ago
Alternatives and similar repositories for ysoserial
Users that are interested in ysoserial are comparing it to the libraries listed below
Sorting:
- A Red Team tool for exfiltrating sensitive data from Confluence pages.☆112Updated 2 years ago
- This code was used for the blogpost on secjuice.☆42Updated 6 years ago
- Python3 tool to perform password spraying against Microsoft Online service using various methods☆87Updated 2 years ago
- A tool to password spray Jenkins instances☆57Updated 6 years ago
- A tool for creating proxy dll for hijacking☆42Updated 8 months ago
- Loads a custom dll in system32 via diaghub.☆76Updated 5 years ago
- Password Spraying Script detecting current and previous passwords of Active Directory User☆65Updated 3 years ago
- Exchangelib wrapper for pentesting☆64Updated 5 months ago
- ☆17Updated 4 years ago
- ☆51Updated 3 years ago
- A mirror of several precompiled standalone red-teaming tools.☆18Updated 2 years ago
- ☆44Updated 8 years ago
- Powershell module to get the NetNTLMv2 hash of the current user☆95Updated 3 years ago
- A collection of Neo4j/BloodHound queries to collect interesting information.☆46Updated 3 years ago
- A list of "secrets" from JWT sample code and readme files.☆56Updated 4 years ago
- Vulnerable webapp testbed☆21Updated 9 years ago
- Electron based screenshot scanner☆68Updated 2 years ago
- This Burpsuite plugin allows for multiple web app testers to share their proxy history with each other in real time. Requests that comes …☆23Updated 5 years ago
- Add SD for controlled computer object to a target object for RBCD using LDAP☆38Updated 3 years ago
- Simple python script for AD enumeration☆31Updated 4 years ago
- ☆54Updated 4 years ago
- Jenkins pre-auth RCE exploit. More info at https://jenkins.io/security/advisory/2019-01-08/#SECURITY-1266 https://blog.orange.tw/2019/02/…☆10Updated 6 years ago
- Iterative AD discovery toolkit for offensive operations☆87Updated 5 years ago
- Jira Secret Hunter - Helps you find credentials and sensitive contents in Jira tickets☆43Updated 2 years ago
- PoC for CVE-2021-36934, which enables a standard user to be able to retrieve the SAM, Security, and Software Registry hives in Windows 10…☆35Updated 2 years ago
- Registry permission scanner written in C# for finding potential privesc avenues within registry☆87Updated 4 years ago
- SQL injection script for MSSQL that extracts domain users from an Active Directory environment based on RID bruteforcing☆91Updated 5 years ago
- Creates a malicious ODF document help leak NetNTLM Creds☆31Updated 2 years ago
- Convert ldapdomaindump to Bloodhound☆80Updated last year
- My python3 implementation of a Forward Shell☆36Updated 6 years ago