kh4sh3i / ElasticSearch-Pentesting
ElasticSearch exploit and Pentesting guide for penetration tester
☆26Updated 2 years ago
Alternatives and similar repositories for ElasticSearch-Pentesting:
Users that are interested in ElasticSearch-Pentesting are comparing it to the libraries listed below
- Help recon of hostnames from specific ASN or CIDR, thanks to Robtex and BGP.HE☆53Updated 4 months ago
- Perform TE.CL HTTP Request Smuggling attacks by crafting HTTP Request automatically.☆67Updated 3 years ago
- Burp extension to check and exploit the IIS Tilde Enumeration/IIS 8.3 Short Filename Disclosure vulnerability☆58Updated last year
- Burp Suite extension to encode an IP address focused to bypass application IP / domain blacklist.☆44Updated last year
- A Go tool that gets the newest PRs from projectdiscovery/nuclei-templates.☆54Updated last year
- A BurpSuite extension to deploy an OpenVPN config file to DigitalOcean and set up a SOCKS proxy to route traffic through it☆49Updated last year
- Web cache poisoning vulnerability scanner.☆65Updated 2 years ago
- ☆25Updated 2 years ago
- ☆53Updated 2 years ago
- Just some random small tools for dealing with asp.net Forms Authentication Cookies☆23Updated 3 years ago
- Simple bash Script to automate initial recon using (httpx, puredns, regulator, wayback, katana, aquatone)☆35Updated 2 years ago
- Enhanced 403 bypass header☆21Updated 2 years ago
- ☆27Updated 2 years ago
- ☆43Updated last year
- BBSSRF - Bug Bounty SSRF is a powerful tool to check SSRF OOB connection☆38Updated last year
- Bcheck scripts for Burp☆25Updated 7 months ago
- Make better use of the embedded browser that comes by default with Burp☆43Updated last year
- ☆60Updated 2 years ago
- Template Nuclei SSTI☆29Updated last year
- ☆25Updated 4 years ago
- A "Spring4Shell" vulnerability scanner.☆49Updated 2 months ago
- DNS resolution tracing tool☆34Updated 3 years ago
- A simple automation tool to detect lfi, rce and ssti vulnerability☆55Updated 3 years ago
- ☆55Updated 10 months ago
- Script for Bug Bounty☆28Updated 3 years ago
- This tool is designed to test for file upload and XXE vulnerabilities by poisoning XLSX files.☆75Updated last year
- User enumeration and password spraying tool for testing Azure AD☆69Updated 3 years ago
- Automated HTTP Request Repeating With Burp Suite☆35Updated last year
- RSEScan is a command-line utility for interacting with the RSECloud. It allows you to fetch subdomains and IPs from certificates for a gi…☆16Updated 9 months ago