iricartb / advanced-sql-injection-scanner
Ivan Ricart Borges - Test for didactic purposes of web pages vulnerables to SQL injection using dbo database user with xp_cmdshell execution permissions. Using patterns from Internet search engines to extract potentially vulnerable web addresses and test them by changing the GET parameters using invalid Transact-SQL conversion function to cause …
☆22Updated 3 years ago
Alternatives and similar repositories for advanced-sql-injection-scanner:
Users that are interested in advanced-sql-injection-scanner are comparing it to the libraries listed below
- Exploit Research & Development - Ported Exploits☆11Updated 7 years ago
- C & Shellcode Playground..☆11Updated 7 years ago
- module for certexfil☆15Updated 2 years ago
- It becomes the extension of Burp suite. The cookie set by the BipIP server may include a private IP, which is an extension to detect tha…☆16Updated 11 months ago
- Burp extension for automated handling of CSRF tokens☆16Updated 7 years ago
- Asynchronous MSF RPC API wrapper☆20Updated 2 years ago
- Local enumeration and exploitation framework.☆18Updated 7 years ago
- An AV evasion technique using multibyte xor encoding of shellcode☆8Updated 8 years ago
- ☆18Updated 6 years ago
- Do the unexpected with AD GPO processing☆9Updated 5 years ago
- Public exploits☆14Updated 6 years ago
- A PoC to show how to add code to C# and dotNet and make it reusable for Red Team operations. Maybe one day it will be the largest collect…☆17Updated 5 years ago
- Uses Shodan API to pull down C2 servers to run known exploits on them.☆18Updated 7 years ago
- A recon-ng module for crawling Indeed.com for contacts and resumes.☆12Updated 9 years ago
- Launch a Windows EXE file with this EXE file (application filter evasion)☆13Updated 8 years ago
- ☆16Updated 6 years ago
- ☆11Updated 6 years ago
- Escalation Servers and Scripts for Priv Escalation☆19Updated 5 years ago
- Working exploit code for CVE-2019-17625☆19Updated 5 years ago
- Simple PowerShell enumeration script to look for interesting files☆10Updated 5 years ago
- A bunch of tricks and configs to configure a work environment for web pentesting☆12Updated 6 years ago
- Techniques that i have used to evade anti-virus during pen tests.☆13Updated 6 years ago
- ShellC0de Generator☆11Updated 4 years ago
- A Burp extension for generic extraction and reuse of data within HTTP requests and responses.☆8Updated 3 years ago
- The official exploit for OCS Inventory NG v2.7 Remote Command Execution CVE-2020-14947☆19Updated 4 years ago
- Useful Windows and AD tools☆15Updated 3 years ago
- A fully featured Windows backdoor that uses email as a C&C server☆16Updated 7 years ago
- Random Tips and Writeups.☆13Updated 6 years ago
- Automated Payload Test Controller☆9Updated 7 years ago
- Commands to perform various activities related to penetration testing and red teaming☆19Updated 5 years ago