Vulnerable webapp testbed
☆24May 11, 2016Updated 9 years ago
Alternatives and similar repositories for java-deserialize-webapp
Users that are interested in java-deserialize-webapp are comparing it to the libraries listed below
Sorting:
- ☆16Apr 14, 2020Updated 5 years ago
- Java deserialization exploitation lab.☆237Mar 1, 2019Updated 7 years ago
- ☆16Jul 7, 2020Updated 5 years ago
- A script to search for URLs with parameters worthy testing for vulnerabilities☆19Dec 8, 2022Updated 3 years ago
- ☆15Oct 8, 2025Updated 4 months ago
- Example project demonstrating some kind of OpenSSL certificate pinning. Related to blogpost at TKTK showing how to bypass such pinning.☆19Jan 2, 2015Updated 11 years ago
- Notes and helper scripts/files/etc from when I passed my OSCP☆19Sep 17, 2019Updated 6 years ago
- Python script to generate a malicious MP4 file and start a CherryPy web server hosting a simple HTML page with the embedded file. Exploi…☆17Dec 8, 2015Updated 10 years ago
- Cloud4RPi Documentation☆16Jun 25, 2020Updated 5 years ago
- ☆18Sep 2, 2021Updated 4 years ago
- Will try to put here slides from now on when I give a talk☆24Oct 11, 2021Updated 4 years ago
- This repository holds a target infrastructure you can use for running the nimbostratus tools.☆24Mar 9, 2015Updated 10 years ago
- ☆17May 20, 2021Updated 4 years ago
- HTTP requests of FrontPage expolit☆25Dec 19, 2013Updated 12 years ago
- 2 web tasks from ZeroNights HackQuest 2016☆50Mar 24, 2017Updated 8 years ago
- ☆23Nov 18, 2015Updated 10 years ago
- RCE Exploit PoC for Spring based RESTFul APIs using XStream as Unmarshaler☆20Dec 24, 2013Updated 12 years ago
- Zone transfers for rwhois☆20Feb 27, 2019Updated 7 years ago
- A repository of wordlists for enumeration. Will be added to by my tools when they find interesting new entries☆23Jan 21, 2021Updated 5 years ago
- Conference Papers and Appendicies (USENIX Security, BlackHat, HITBSecConf, and BeVX)☆27Aug 6, 2023Updated 2 years ago
- Image size issues plugin for Burp Suite☆95Jun 27, 2018Updated 7 years ago
- A small .NET compression utility☆58Feb 2, 2022Updated 4 years ago
- CVE-2020-11890: Improper input validations in the usergroup table class could lead to a broken ACL configuration to RCE☆62Jun 1, 2023Updated 2 years ago
- ☆25Oct 17, 2023Updated 2 years ago
- qsinject (Query String Inject) is a tool that allows you to quickly substitute query string values with regex matches, one-at-a-time.☆30May 6, 2020Updated 5 years ago
- 0xbro's cheatsheets and CTFs notes☆91Feb 16, 2026Updated last week
- Script for Bug Bounty☆29Sep 17, 2021Updated 4 years ago
- ☆28Jan 3, 2021Updated 5 years ago
- Log converter from CS log to Ghostwriter CSV☆31Nov 23, 2020Updated 5 years ago
- Cobalt Strike Field Manual - A quick reference for Windows commands that can be accessed in a beacon console.☆65Dec 27, 2017Updated 8 years ago
- ☆61Mar 16, 2018Updated 7 years ago
- ☆34Aug 13, 2021Updated 4 years ago
- ☆31Jul 27, 2020Updated 5 years ago
- CVE-2020-2021☆22Oct 12, 2020Updated 5 years ago
- Windows LNK/URL shortcut auto-binding hotkey (not a bug, feature)☆30Mar 22, 2018Updated 7 years ago
- DupeKeyInjector☆134Apr 16, 2022Updated 3 years ago
- Material from our CANAPE workshop☆32Nov 26, 2018Updated 7 years ago
- URL Screenshot Utility☆28May 22, 2023Updated 2 years ago
- Java serialization brute force attack tool.☆123Aug 18, 2017Updated 8 years ago