irsdl / IIS-ShortName-Scanner
latest version of scanners for IIS short filename (8.3) disclosure vulnerability
☆1,489Updated last year
Alternatives and similar repositories for IIS-ShortName-Scanner:
Users that are interested in IIS-ShortName-Scanner are comparing it to the libraries listed below
- Tool for automatic exploitation of XXE vulnerability using direct and different out of band methods.☆1,592Updated 2 months ago
- Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that allows you, in a quick and simple way, to improve the ac…☆1,708Updated 9 months ago
- SSRF (Server Side Request Forgery) testing resources☆2,385Updated 4 months ago
- Automatic SSRF fuzzer and exploitation tool☆3,084Updated 8 months ago
- Totally Automatic LFI Exploiter (+ Reverse Shell) and Scanner☆1,756Updated 2 years ago
- Burp plugin able to find reflected XSS on page in real-time while browsing on site☆1,140Updated 4 years ago
- A tool for embedding XXE/XML exploits into different filetypes☆1,067Updated 2 months ago
- ezXSS is an easy way for penetration testers and bug bounty hunters to test (blind) Cross Site Scripting.☆1,979Updated 2 months ago
- Quick SQLMap Tamper Suggester☆1,362Updated 2 years ago
- A wordlist of API names for web application assessments☆787Updated 2 years ago
- Generates permutations, alterations and mutations of subdomains and then resolves them☆2,379Updated last month
- Turbo Intruder is a Burp Suite extension for sending large numbers of HTTP requests and analyzing the results.☆1,561Updated this week
- This Lab contain the sample codes which are vulnerable to Server-Side Request Forgery attack☆695Updated last year
- Automatic authorization enforcement detection extension for burp suite written in Jython developed by Barak Tawily in order to ease appli…☆987Updated last month
- List DTDs and generate XXE payloads using those local DTDs.☆619Updated last year
- ☆1,298Updated 2 weeks ago
- Burp Extension for a passive scanning JS files for endpoint links.☆764Updated 10 months ago
- A collection of proof-of-concept exploit scripts written by the team at Rhino Security Labs for various CVEs.☆826Updated 3 weeks ago
- List of XSS Vectors/Payloads☆1,214Updated last month
- Finds unknown classes of injection vulnerabilities☆651Updated last year
- Automated & Manual Wordlists provided by Assetnote☆1,380Updated 6 months ago
- This tool generates gopher link for exploiting SSRF and gaining RCE in various servers☆2,963Updated last year
- Smuggler - An HTTP Request Smuggling / Desync testing tool written in Python 3☆1,896Updated last year
- Automated HTTP Request Repeating With Burp Suite☆864Updated 3 years ago
- An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability☆846Updated 3 years ago
- A tool to embed XXE and XSS payloads in docx, odt, pptx, xlsx files (oxml_xxe on steroids)☆580Updated last year
- The XSS Hunter service - a portable version of XSSHunter.com☆1,512Updated 2 years ago
- Simple websites vulnerable to Server Side Template Injections(SSTI)☆387Updated last year
- Open Redirect Payloads☆599Updated 4 months ago
- GF Paterns For (ssrf,RCE,Lfi,sqli,ssti,idor,url redirection,debug_logic, interesting Subs) parameters grep☆1,259Updated 5 months ago