frohoff / rails_exploits
☆22Updated 10 years ago
Alternatives and similar repositories for rails_exploits:
Users that are interested in rails_exploits are comparing it to the libraries listed below
- Cracker for Apache.lang.commons RandomStringUtils(). Code for "The Java Soothsayer" talk at EkoParty 2017 by Alejo Popovici.☆32Updated 7 years ago
- Transparently log all data passed into known JavaScript sinks - Sink Logger extension for Burp.☆49Updated 2 years ago
- WebBorer is a directory-enumeration tool written in Go.☆44Updated 2 years ago
- Simple trick to increase readability of exceptions raised by Burp extensions written in Python☆43Updated 8 years ago
- This is a Burp extension for adding additional payloads to active scanner that require out-of-band validation. Works great with XSSHunter☆20Updated 8 years ago
- A central place to keep track of relevant BountyMachine talks, blogs, and interesting things!☆33Updated 6 years ago
- A Burp Extender plugin, that will deserialized java objects and encode them in XML using the Xtream library.☆25Updated 9 years ago
- Parse X509 certificates to get the (sub)domains in it.☆28Updated 6 years ago
- Index all certificates from certificate transparancy into Elasticsearch☆23Updated 7 years ago
- A brute force program to test weak accounts configured to access a JMX Registry☆34Updated 8 years ago
- The Outlook HTML Leak Test Project☆41Updated 6 years ago
- Payload generator for Java Binary Deserialization attack with Commons FileUpload (CVE-2013-2186)☆38Updated 8 years ago
- Terraform configuration to build a Burp Private Collaborator Server☆29Updated 6 years ago
- 💣 REST and SOAP web API fuzzer☆26Updated 8 years ago
- ☆38Updated 4 years ago
- Study about HQL injection exploitation.☆51Updated 8 years ago
- Burp Suite extension to help make Graphql request more readable☆31Updated 7 years ago
- Highlight Burp proxy requests made by different browsers☆30Updated 7 years ago
- ☆25Updated 3 years ago
- Viewstate Hidden Control Enumerator☆17Updated 11 years ago
- Reverse or bind shell catcher which uprgrades the caught shell to be more like a regular shell☆27Updated 6 years ago
- This repository contains hit lists to use for web application content discovery.☆11Updated 7 years ago
- Check for .net padding oracle patch☆19Updated 6 years ago
- .NET Deserialization Passive Scanner☆45Updated 7 years ago
- Generate pentest reports based on github issues.☆17Updated 2 years ago
- This is a Burpsuite plugin built to enable you to import your directory bruteforcing results into burp for easy viewing later. This is an…☆36Updated 2 years ago
- ☆33Updated 3 years ago
- Burp Suite extension to passively scan for applications revealing server error messages☆66Updated last year
- Docker Version of Aquatone☆13Updated 6 years ago
- OAuth Security Cheatsheet☆39Updated 10 years ago