kh4sh3i / ElasticSearch-Pentesting
ElasticSearch exploit and Pentesting guide for penetration tester
☆27Updated 2 years ago
Alternatives and similar repositories for ElasticSearch-Pentesting:
Users that are interested in ElasticSearch-Pentesting are comparing it to the libraries listed below
- A BurpSuite extension to deploy an OpenVPN config file to DigitalOcean and set up a SOCKS proxy to route traffic through it☆49Updated last year
- Perform TE.CL HTTP Request Smuggling attacks by crafting HTTP Request automatically.☆71Updated 3 years ago
- ☆55Updated 2 years ago
- Help recon of hostnames from specific ASN or CIDR, thanks to Robtex and BGP.HE☆53Updated 6 months ago
- ☆33Updated 2 weeks ago
- Burp extension to check and exploit the IIS Tilde Enumeration/IIS 8.3 Short Filename Disclosure vulnerability☆59Updated last year
- ☆27Updated 2 years ago
- ☆25Updated 3 years ago
- Bcheck scripts for Burp☆28Updated 8 months ago
- ☆56Updated 11 months ago
- ☆25Updated 2 years ago
- User enumeration and password spraying tool for testing Azure AD☆69Updated 3 years ago
- Web cache poisoning vulnerability scanner.☆66Updated 3 years ago
- A powerful AWS Cognito analysis and session hijacking toolkit designed for security researchers and penetration testers. CognitoHunter sp…☆20Updated 3 months ago
- a burp extension for dynamic payload generation to detect injection flaws (RCE, LFI, SQLi), creates access matrix based user sessions to …☆49Updated 3 years ago
- Make better use of the embedded browser that comes by default with Burp☆43Updated last year
- DNS resolution tracing tool☆34Updated 3 years ago
- Nmapurls parses Nmap xml reports from either piped input or command line arg and outputs a list of http(s) URL's to be used in an automat…☆41Updated last year
- Automated HTTP Request Repeating With Burp Suite☆37Updated 2 years ago
- Exploit for Symfony CVE-2024-50340 (forked eos)☆28Updated 5 months ago
- A Go tool that gets the newest PRs from projectdiscovery/nuclei-templates.☆54Updated last year
- 🚀 Sling Shot R3con: Automate Your Bug Bounty and Pentest Reconnaissance with Project Discovery tools 🎯☆24Updated last year
- Simple bash Script to automate initial recon using (httpx, puredns, regulator, wayback, katana, aquatone)☆34Updated last month
- A Burp Suite extension for finding DNS vulnerabilities in web applications!☆94Updated last year
- Template Nuclei SSTI☆29Updated last year
- ☆68Updated last year
- Template used for my OSCP exam.☆28Updated 2 years ago
- This tool is designed to test for file upload and XXE vulnerabilities by poisoning XLSX files.☆75Updated last year
- Framework for blind boolean-based sql injections exploatation. Use it if sqlmap does shit.☆29Updated 3 years ago
- An MS Sharepoint and Frontpage Auditing Tool☆48Updated 5 months ago