iagox86 / poracle
☆90Updated 6 years ago
Alternatives and similar repositories for poracle:
Users that are interested in poracle are comparing it to the libraries listed below
- Tests for different parsers from Ruby, Python, .NET, PHP, Perl, Java☆55Updated 8 years ago
- ☆70Updated 7 years ago
- A Java serializer in JavaScript☆81Updated 6 years ago
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆34Updated 8 years ago
- Improved decoder for Burp Suite☆137Updated 3 years ago
- Python Web framework P0wner☆75Updated 12 years ago
- JWT Fuzzer for BurpSuite. Adds an Intruder hook for on-the-fly JWT fuzzing.☆98Updated 5 years ago
- Repository to hold materials for DefCon_RESTing presentation by Dinis, Abe and Alvaro☆52Updated 11 years ago
- Image size issues plugin for Burp Suite☆93Updated 6 years ago
- Demo server for testing Java deserialization payloads☆15Updated 8 years ago
- An example of obtaining RCE via Redis and CSRF☆76Updated 8 years ago
- Cracker for Apache.lang.commons RandomStringUtils(). Code for "The Java Soothsayer" talk at EkoParty 2017 by Alejo Popovici.☆32Updated 7 years ago
- A brute force program to test weak accounts configured to access a JMX Registry☆34Updated 8 years ago
- ☆84Updated 8 years ago
- The Outlook HTML Leak Test Project☆132Updated 6 years ago
- DupeKeyInjector☆135Updated 3 years ago
- public exploits☆35Updated last year
- A library to assist in security-testing Unicode enabled applications during fuzzing, XSS, SQLi, etc.☆42Updated 7 years ago
- ☆73Updated 6 years ago
- An example project that exploits the default typing issue in Jackson-databind via Spring application contexts and expressions☆122Updated 7 years ago
- TLS Redirection☆120Updated 7 years ago
- Burp Suite plugin created for using Collaborator tool during manual testing in a comfortable way!☆103Updated 6 years ago
- HTTPWookiee is an HTTP server and proxy stress tool (respect of RFC, HTTP Smuggling issues, etc). If you run an HTTP server project conta…☆50Updated 7 years ago
- ImaegMagick Code Execution (CVE-2016-3714)☆69Updated 8 years ago
- Proof of concept showing how java byte code can be injected through InitialContext.lookup() calls☆42Updated 9 years ago
- .NET Deserialization Passive Scanner☆45Updated 7 years ago
- A tool to analyse JMX API security level.☆43Updated 10 years ago
- A front-end JavaScript toolkit for creating DNS rebinding attacks.☆45Updated 6 years ago
- ☆128Updated 8 years ago
- XXE OOB Exploitation Toolset for Automation☆63Updated 11 years ago