irsl / curlshellLinks
reverse shell using curl
☆457Updated last year
Alternatives and similar repositories for curlshell
Users that are interested in curlshell are comparing it to the libraries listed below
Sorting:
- A library for detecting known secrets across many web frameworks☆656Updated this week
- JavaScript payload and supporting software to be used as XSS payload or post exploitation implant to monitor users as they use the target…☆375Updated 2 months ago
- ☆512Updated last month
- ↕️🤫 Stealth redirector for your red team operation security☆696Updated last week
- Kraken, a modular multi-language webshell coded by @secu_x11☆546Updated last year
- Tool to automatically exploit Active Directory privilege escalation paths shown by BloodHound☆585Updated 8 months ago
- mTLS-Encrypted Back-Connect SOCKS5 Proxy☆446Updated last year
- Kubernetes exploitation tool☆362Updated 11 months ago
- This repository presents a proof-of-concept of CVE-2023-7028☆240Updated last year
- Session Hijacking Visual Exploitation☆201Updated last year
- Windows remote execution multitool☆591Updated last month
- A python script to scan for Apache Tomcat server vulnerabilities.☆843Updated 5 months ago
- Burp Suite extension for bypassing client-side encryption for pentesting and bug bounty☆207Updated 3 months ago
- Just another Powerview alternative but on steroids☆740Updated this week
- smbclient-ng, a fast and user friendly way to interact with SMB shares.☆936Updated 2 weeks ago
- An ADCS Exploitation Automation Tool Weaponizing Certipy and Coercer☆721Updated 2 years ago
- CVE 2023 25690 Proof of concept - mod_proxy vulnerable configuration on Apache HTTP Server versions 2.4.0 - 2.4.55 leads to HTTP Request …☆284Updated 10 months ago
- LdapNightmare is a PoC tool that tests a vulnerable Windows Server against CVE-2024-49113☆498Updated 6 months ago
- Customizable Linux Persistence Tool for Security Research and Detection Engineering.☆673Updated 4 months ago
- Active Directory reconnaissance and exploitation for Red Teams via the Active Directory Web Services (ADWS).☆563Updated last year
- A proof of concept exploit for CVE-2022-40684 affecting Fortinet FortiOS, FortiProxy, and FortiSwitchManager☆354Updated 2 years ago
- Harvest passwords automatically from OpenSSH server☆374Updated 2 years ago
- MultiDump is a post-exploitation tool for dumping and extracting LSASS memory discreetly.☆525Updated 2 months ago
- Google Calendar RAT is a PoC of Command&Control over Google Calendar Events☆247Updated last month
- A PoC for the CVE-2022-44268 - ImageMagick arbitrary file read☆216Updated 3 months ago
- Catspin rotates the IP address of HTTP requests making IP based blocks or slowdown measures ineffective. It is based on AWS API Gateway a…☆264Updated last year
- ☆543Updated last year
- gRPC-Web Pentesting Suite + Burp Suite Extension / Hack gRPC-Web Applications☆225Updated 4 months ago
- This is a PoC code to exploit the IngressNightmare vulnerabilities (CVE-2025-1097, CVE-2025-1098, CVE-2025-24514, and CVE-2025-1974).☆207Updated 3 months ago
- CVE-2023-24055 PoC (KeePass 2.5x)☆254Updated 2 years ago