Yet another Werkzeug Console Pin Exploit Explanation
☆23Jul 30, 2021Updated 5 years ago
Alternatives and similar repositories for werkzeug-pin
Users that are interested in werkzeug-pin are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Precompiled executable☆71Feb 21, 2025Updated last year
- Unauthenticated Sqlinjection that leads to dump data base but this one impersonated Admin and drops a interactive shell☆24Jan 13, 2022Updated 4 years ago
- Proof-of-Concept for Server Side Request Forgery (SSRF) in request-baskets (<= v.1.2.1)☆31Aug 9, 2023Updated 3 years ago
- Stack Based buffer overflow attack☆21Nov 25, 2023Updated 2 years ago
- Apophis is a Bash script that leverages tools such as DotNetToJScript, ConfuserEx, Net-Obfuscator etc. to generate 'Shellcode runners'.☆20Mar 12, 2023Updated 3 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- Python script to execute commands via Erlang/OTP Distribution Protocol☆15Feb 6, 2024Updated 2 years ago
- Proof of Concept in Go from Secureworks' research on Azure Active Directory Brute-Force Attacks. Inspired by @treebuilder's POC on PowerS…☆14Feb 23, 2022Updated 4 years ago
- A PoC exploit for CVE-2023-51467 - Apache OFBiz Authentication Bypass☆12Dec 31, 2023Updated 2 years ago
- Notes for the CRTO exam☆10May 22, 2022Updated 4 years ago
- CVE-2023-40028 affects Ghost, an open source content management system, where versions prior to 5.59.1 allow authenticated users to uploa …☆13Jan 7, 2025Updated last year
- Exploit codes for rconfig <= 3.9.4☆11Mar 17, 2020Updated 6 years ago
- Silvera is an tool for acceleration of development of microservice architectures https://alensuljkanovic.github.io/silvera/☆11Apr 27, 2023Updated 3 years ago
- Werkzeug has a debug console that requires a pin. It's possible to bypass this with an LFI vulnerability or use it as a local privilege e…☆66Nov 16, 2022Updated 3 years ago
- CBC Bit-Flipping Attack Example with Python☆13Jun 14, 2023Updated 3 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- Mini RISC-V toolchain for Linux consisting of compiler, simulator and disassembler.☆12Sep 29, 2022Updated 3 years ago
- a simple powershell wrapper to automate checking a user's access around the network☆14Dec 5, 2023Updated 2 years ago
- A Nintendo 3DS Emulator☆10Aug 3, 2022Updated 4 years ago
- MITRE ATT&CK visualizations☆12Jan 28, 2022Updated 4 years ago
- Journey so Far☆34Feb 15, 2022Updated 4 years ago
- A Collection of templates that can be used for abusing window's AlwaysInstallElevated policy☆40Jan 4, 2023Updated 3 years ago
- PEN-300 collection to help you on your exam.☆14Apr 19, 2022Updated 4 years ago
- Metabase Pre-auth RCE (CVE-2023-38646)!!☆15Jul 29, 2023Updated 3 years ago
- ASSVD☆17Dec 19, 2025Updated 8 months ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Script to extract the cached credentials from SSSD, getting Active Directory credentials from Unix systems☆26Jun 14, 2023Updated 3 years ago
- NotSoCereal: A Deserialization exploit playground☆55Jan 13, 2022Updated 4 years ago
- Python script for exploiting Werkzeug Debug RCE useful for CTF☆40Feb 18, 2020Updated 6 years ago
- LDAP Enumeration Tool☆13Mar 28, 2024Updated 2 years ago
- Bridge the gap between your Markdown notes and your SysReptor report findings☆16Jul 3, 2025Updated last year
- A powershell script that performs reflective parent process ID (PPID) spoofing and process hollowing to evade Windows Defender☆11Feb 17, 2023Updated 3 years ago
- ☆39Oct 20, 2023Updated 2 years ago
- Reflective shellcode runners using obfuscated Win32 APIs in C# and C++ (GetProcAddress & GetModuleHandle). For penetration testing.☆16Jul 17, 2025Updated last year
- ☆44Jul 31, 2024Updated 2 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- A proof of concept for CVE-2023–1326 in apport-cli 2.26.0☆21Dec 6, 2023Updated 2 years ago
- Ghostscript command injection vulnerability PoC (CVE-2023-36664)☆131Sep 7, 2023Updated 3 years ago
- A Bash script to test a list of URLs for the shellshock vulnerability.☆26Nov 15, 2019Updated 6 years ago
- ☆18Aug 31, 2023Updated 3 years ago
- All about Active Directory pentesting☆172Dec 29, 2020Updated 5 years ago
- Exploit for CVE-2022-26134: Confluence Pre-Auth Remote Code Execution via OGNL Injection☆13Jul 24, 2022Updated 4 years ago
- This tool compares a targets patch levels against the Microsoft vulnerability database in order to detect potential missing patches on th…☆15Jul 7, 2021Updated 5 years ago