kh4sh3i / xmlrpc-exploit
Exploiting the xmlrpc.php on all WordPress versions
☆24Updated 2 years ago
Alternatives and similar repositories for xmlrpc-exploit:
Users that are interested in xmlrpc-exploit are comparing it to the libraries listed below
- The (WordPress) website test script can be exploited for Unlimited File Upload via CVE-2020-35489☆30Updated 11 months ago
- A simple automation tool to detect lfi, rce and ssti vulnerability☆55Updated 3 years ago
- The fastest way to setup XSSHunter. It has options for the official and Discord/Slack Forks☆41Updated last year
- Damn Vulnerable PHP Application (DVPA) - It is Lab Written in The PHP lang, Which Contains PHP Type Juggling - RCE Challenges☆32Updated 2 years ago
- Subdomains enumeration, various scans and testing of some vulnerabilities.☆79Updated 2 weeks ago
- I collected it to help the bug hunter get a reward☆58Updated 2 years ago
- Here Are Some Bug Bounty Resource From Twitter☆88Updated last month
- A repository to host the subdomain wordlists from my blog https://medium.com/@nynan/what-i-learnt-from-reading-217-subdomain-takeover-bug…☆40Updated 2 years ago
- Swagger UI >=3.14.1 < 3.38.0 XSS payload☆19Updated 11 months ago
- These Repositories About My Recon Methodology To Give Some Idea For Other Hunter How To Do Recon☆43Updated 2 years ago
- Run ffuf with the appropriate options to brute-force the directories using the awesome different wordlists.☆23Updated last year
- Filter URLs to save your time.☆59Updated 2 years ago
- XSS Finder Via SSTI☆54Updated last year
- IIS shortname scanner + bruteforce☆51Updated last year
- ☆77Updated 2 years ago
- BBSSRF - Bug Bounty SSRF is a powerful tool to check SSRF OOB connection☆38Updated last year
- This extension adds a search bar to the Repeater tab that can be used to highlight all repeater tabs where the request and/or response ma…☆79Updated last year
- Bug Bounty Recon Automation Script -- Scan AWS IP Range Certs for Matching FQDN☆25Updated 3 years ago
- ☆33Updated 2 years ago
- This is a comprehensive Subdomain Enumeration Guide that traces back to my GitBook.☆31Updated last year
- ☆28Updated 5 months ago
- A simple plugin to export JS files from one or multiple targets☆40Updated last year
- Learn how to automate XSS, SSRF, LFI, SQLI, NoSQLi☆38Updated 3 years ago
- Burp Suite extension to encode an IP address focused to bypass application IP / domain blacklist.☆44Updated last year
- Python tool to test known techniques to bypass 403 and 401 HTTP responses.☆35Updated last year
- This repository contains proof of concept for zero days and CVEs that were found by Omar Hashem through Security Research☆44Updated 2 years ago
- ☆48Updated 4 years ago
- Supertruder but better☆32Updated 2 years ago
- Oneliner Bug Bounty Collection collected from GitHub to all bug bounty hunters☆30Updated last year
- Web cache poisoning vulnerability scanner.☆64Updated 2 years ago