hvqzao / burp-wildcard
Burp extension intended to compact Burp extension tabs by hijacking them to own tab.
☆128Updated 4 years ago
Alternatives and similar repositories for burp-wildcard:
Users that are interested in burp-wildcard are comparing it to the libraries listed below
- A simple python script to generate XML payloads works for XMLDecoder based on ProcessBuilder and Runtime exec☆149Updated 4 years ago
- Exploitation Tool for CVE-2017-3066 targeting Adobe Coldfusion 11/12☆94Updated 2 years ago
- Rusty Joomla RCE Exploit☆69Updated 2 years ago
- Apache Solr RCE via Velocity template☆108Updated 5 years ago
- exploit Apache Flink Web Dashboard unauth rce on right way by python2 scripts☆90Updated 5 years ago
- Tool to searching sentry config on page or in javascript files and check blind SSRF☆70Updated 9 months ago
- A BurpSuite extension written by Python,used to find API interface in JS file.☆114Updated 2 years ago
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆102Updated 5 years ago
- Burp Suite Plugin: Convert the json text that returns the body into HTTP request parameters.☆99Updated 3 years ago
- forked from frohoff/ysoserial and added my own payloads.☆151Updated 5 years ago
- SpringBoot_Actuator_RCE☆97Updated 4 years ago
- Shiro RCE (Padding Oracle Attack)☆142Updated 5 years ago
- A vulnerable application exposing Spring Boot Actuators☆121Updated 6 years ago
- CVE-2019-11580 Atlassian Crowd and Crowd Data Center RCE☆106Updated 5 years ago
- web fuzzing && bug hunter☆60Updated 3 years ago
- ☆106Updated 8 years ago
- burpsuite 插件对GP所有参数(过滤特殊参数)一键自动添加xss sql payload 进行fuzz☆61Updated 6 years ago
- burpsuite extension for check and extract sensitive request parameter☆112Updated 4 years ago
- xxe oob receive file via web and ftp server☆96Updated 5 years ago
- Remote Command Execution Over Spark☆96Updated 7 years ago
- Weblogic CVE-2020-14645 UniversalExtractor JNDI injection getDatabaseMetaData()☆79Updated 4 years ago
- A Burp plugin that collects Burp request parameters, directories, paths and file names into the database for sorting☆91Updated 4 years ago
- Weblogic CVE-2019-2725 CVE-2019-2729 Getshell 命令执行☆68Updated 5 years ago
- F5 BIG-IP RCE CVE-2020-5902 automatic check tool☆62Updated 4 years ago
- CVE-2020-36179~82 Jackson-databind SSRF&RCE☆80Updated 4 years ago
- cve-2020-0688☆163Updated 5 years ago
- ☆69Updated 4 years ago
- Decode the cookies set by balancer F5, and disclousure all pool ip☆77Updated 5 years ago
- https://github.com/GrrrDog/Java-Deserialization-Cheat-Sheet☆50Updated 3 years ago
- ☆186Updated 10 months ago