gh0stkey / FuckAnywhere
FuckAnywhere - 这是一个BurpSuite Jython(Python)插件,用于在HTTP请求中随处插入你想要进行测试的代码。
☆51Updated 3 years ago
Alternatives and similar repositories for FuckAnywhere:
Users that are interested in FuckAnywhere are comparing it to the libraries listed below
- common methods that used by my burp extension projects☆51Updated last year
- Burp Extender, ssrf scanner, 自动扫描ssrf漏洞☆46Updated 4 years ago
- 简单记录下自己在挖掘SRC☆32Updated 4 years ago
- ☆19Updated 2 years ago
- xrecon is a powerful web fingerprinting tool with CDN detection capabilities☆33Updated 8 months ago
- XSTREAM<=1.4.17漏洞复现(CVE-2021-39141、CVE-2021-39144、CVE-2021-39150)☆60Updated 3 years ago
- jmreport/qurestSql 未授权SQL注入批量扫描poc Jeecg-Boot是一款基于Spring Boot和Jeecg-Boot-Plus的快速开发平台,最新的jeecg-boot 3.5.0 中被爆出多个SQL注入漏洞。☆21Updated last year
- Apache Airflow < 2.4.0 DAG example_bash_operator RCE POC☆40Updated 2 years ago
- Django QuerySet.annotate(), aggregate(), extra() SQL 注入☆23Updated 2 years ago
- burp extension for SSRF☆27Updated last year
- gitlab version index☆61Updated 3 years ago
- Goal Go Red-Team 工具类☆44Updated 3 months ago
- ☆20Updated 3 years ago
- web fuzzing && bug hunter☆60Updated 3 years ago
- 一款被动扫描ssrf的burpsuite插件☆21Updated 2 years ago
- 根据多个不同地区进行聚合查询以获取更多 fofa 数据☆28Updated last year
- CVE-2022-26134 - Confluence Pre-Auth RCE | OGNL injection☆32Updated 2 years ago
- CVE-2022-22980环境☆14Updated 2 years ago
- Ni-nuclei二开☆38Updated last year
- 子域名接管的几种变体靶场☆23Updated 9 months ago
- 个人翻译/总结渗透测试思维导图☆28Updated 2 years ago
- Atlassian Jira Seraph Authentication Bypass RCE(CVE-2022-0540)☆72Updated 2 years ago
- IDOR bypass fuzz 权限绕过burp 插件 fuzz (shiro 等)☆26Updated 3 years ago
- CVE-2022-42889 aka Text4Shell research & PoC☆20Updated 2 years ago
- ☆17Updated 3 years ago
- CVE-2023-36899漏洞的复现环境和工具,针对ASP.NET框架中的无cookie会话身份验证绕过。☆29Updated last year
- PoC for ManageEngine ADAudit Plus CVE-2022-28219☆44Updated 2 years ago
- A burp extension, check Sturts2 RCE through passive scan.一款检测Struts2 RCE漏洞的burp被动扫描插件~☆12Updated 4 years ago
- 检测host头攻击的Burpsuite被动扫描插件,Burpsuite passive scanning plugin responsible for detecting host header attack☆10Updated last year
- lite version of gobuster. Only subdomain brute. 内网轻量化子域名爆破工具☆44Updated 3 years ago