gnothiseautonlw / burp-shell-fwd-lfiLinks
A Burp Suite plugin/extension that offers a shell in Burp. Both useful for OS Command injection and LFI exploration
☆78Updated 5 years ago
Alternatives and similar repositories for burp-shell-fwd-lfi
Users that are interested in burp-shell-fwd-lfi are comparing it to the libraries listed below
Sorting:
- Small tool to automate SSRF wordpress and XMLRPC finder☆81Updated 2 years ago
- Wordlist to bruteforce for LFI☆128Updated 6 years ago
- Check AWS S3 instances for read/write/delete access☆122Updated 3 years ago
- ☆55Updated 4 years ago
- Prototype Pollution Scanner☆129Updated 4 years ago
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆132Updated 4 years ago
- Simple fork from degoogle original project with bug hunting purposes☆90Updated 3 years ago
- Automated Web Recon Shell Scripts☆53Updated 4 years ago
- The project aims at creating target-specific wordlists for any web application that you are testing.☆66Updated 3 years ago
- KARMA is a simple bash script automation that can hit Shodan Premium API and find active IPs, ASN, Common Vulnerabilities, CVEs & Open Po…☆59Updated 4 years ago
- ☆84Updated 3 years ago
- Web CTF CheatSheet 🐈☆34Updated 6 years ago
- ☆159Updated 3 years ago
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆120Updated 2 years ago
- All known and unknown public POC's for wordpress themes and plugins☆78Updated 4 years ago
- LFI Payloads List coolected from github repos☆85Updated 5 years ago
- Some contributions in the nuclei-templates repository☆60Updated 3 years ago
- A Burp Suite Extension for pentester and bug bounty hunters an to maintain checklist, map flows, write test cases and track vulnerabiliti…☆118Updated 2 years ago
- ☆89Updated 4 years ago
- Trickest Workflow for discovering log4j vulnerabilities and gathering the newest community payloads.☆112Updated 3 years ago
- A burp suite extension that enumerates infrastructure and application admin interfaces (OTG-CONFIG-005)☆122Updated 3 years ago
- Enumerate Subdomains Through Google Dorks (Bypassed Page Filter)☆125Updated 5 months ago
- AWS S3 open bucket poc automated script.☆57Updated 4 years ago
- A replacement of "qsreplace", accepts URLs as standard input, replaces all query string values with user-supplied values and stdout.☆109Updated 3 years ago
- Basic Recon For Bug Bounty Hunter - "HuntTheBug" is Basic Scripts For Sub Domain Enumeration> Live Domain Enumeration > Sub Domain Hijack…☆55Updated 3 years ago
- Community curated list of template files for the nuclei engine to find security vulnerability and fingerprinting the targets.☆62Updated 2 months ago
- ☆96Updated 5 years ago
- This exention enables autocompletion within BurpSuite Repeater/Intruder tabs.☆164Updated 4 years ago
- ☆42Updated 4 years ago
- ☆77Updated last year