gnothiseautonlw / burp-shell-fwd-lfi
A Burp Suite plugin/extension that offers a shell in Burp. Both useful for OS Command injection and LFI exploration
☆78Updated 4 years ago
Alternatives and similar repositories for burp-shell-fwd-lfi:
Users that are interested in burp-shell-fwd-lfi are comparing it to the libraries listed below
- Prototype Pollution Scanner☆109Updated 3 years ago
- Small tool to automate SSRF wordpress and XMLRPC finder☆80Updated 2 years ago
- A simple Bash one liner with aim to automate CRLF vulnerability scanning.☆68Updated 4 years ago
- HTTP verb tampering & methods enumeration☆56Updated 2 years ago
- All known and unknown public POC's for wordpress themes and plugins☆79Updated 3 years ago
- This exention enables autocompletion within BurpSuite Repeater/Intruder tabs.☆163Updated 3 years ago
- ☆32Updated 2 years ago
- ☆52Updated 3 years ago
- Automated Web Recon Shell Scripts☆51Updated 3 years ago
- Wordlist to bruteforce for LFI☆122Updated 5 years ago
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆130Updated 4 years ago
- The project aims at creating target-specific wordlists for any web application that you are testing.☆64Updated 2 years ago
- golang tool to scan domains or single domains with know security issues against xmlrpc☆60Updated last year
- A fast tool to scan SAAS,PAAS App written in Go☆84Updated 2 years ago
- Simple fork from degoogle original project with bug hunting purposes☆88Updated 2 years ago
- An MS Sharepoint and Frontpage Auditing Tool☆45Updated 3 months ago
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆117Updated last year
- KARMA is a simple bash script automation that can hit Shodan Premium API and find active IPs, ASN, Common Vulnerabilities, CVEs & Open Po…☆58Updated 3 years ago
- ☆39Updated last year
- Check AWS S3 instances for read/write/delete access☆120Updated 3 years ago
- Nuclei Templates - Here you will find the templates I use while hunting☆116Updated 3 years ago
- XSS Finder Via SSTI☆54Updated last year
- Advanced Reconnaissance and Web Application Discovery☆79Updated 3 years ago
- A replacement of "qsreplace", accepts URLs as standard input, replaces all query string values with user-supplied values and stdout.☆104Updated 2 years ago
- ☆87Updated 3 years ago
- A list of threat sinks used in the manual security source code review for application security☆70Updated last year
- ☆42Updated 3 years ago
- AWS S3 open bucket poc automated script.☆56Updated 3 years ago
- Striping CDN IPs from a list of IP Addresses☆75Updated 2 years ago
- Learn how to automate XSS, SSRF, LFI, SQLI, NoSQLi☆40Updated 3 years ago