kh4sh3i / xmlrpc-exploit
Exploiting the xmlrpc.php on all WordPress versions
☆23Updated 2 years ago
Alternatives and similar repositories for xmlrpc-exploit:
Users that are interested in xmlrpc-exploit are comparing it to the libraries listed below
- A simple automation tool to detect lfi, rce and ssti vulnerability☆55Updated 2 years ago
- Burp Suite extension to encode an IP address focused to bypass application IP / domain blacklist.☆43Updated 10 months ago
- Web cache poisoning vulnerability scanner.☆64Updated 2 years ago
- ☆67Updated last year
- Swagger UI >=3.14.1 < 3.38.0 XSS payload☆17Updated 10 months ago
- Run ffuf with the appropriate options to brute-force the directories using the awesome different wordlists.☆23Updated last year
- ParamFirstCheck identifies in a list of urls those containing a parameter of the top 25 of the most vulnerable parameters for SQLi, LFI, …☆32Updated last year
- A tool to guess the rest of the shortnames provided by vulnerable IIS instances.☆38Updated last year
- Checks whether a domain is hosted on a cloud service such as AWS, Azure or CloudFlare☆58Updated 2 years ago
- Damn Vulnerable PHP Application (DVPA) - It is Lab Written in The PHP lang, Which Contains PHP Type Juggling - RCE Challenges☆32Updated 2 years ago
- ☆21Updated 2 years ago
- The (WordPress) website test script can be exploited for Unlimited File Upload via CVE-2020-35489☆30Updated 10 months ago
- ☆51Updated 2 years ago
- ☆43Updated last year
- A solid recon tool I use personally.☆30Updated last year
- Help recon of hostnames from specific ASN or CIDR, thanks to Robtex and BGP.HE☆52Updated 3 months ago
- ☆17Updated 9 months ago
- An offensive security tool used to enumerate and spray passwords for O365 accounts on both Managed and Federated AD services.☆47Updated 2 years ago
- CRLF Bug scanner for WebPentesters and Bugbounty Hunters☆41Updated last year
- HTTP verb tampering & methods enumeration☆55Updated 2 years ago
- PassMute - A multi featured Password Transmutation/Mutator Tool☆51Updated last year
- Web Crawler for Identifying Entry Points☆11Updated 10 months ago
- These Repositories About My Recon Methodology To Give Some Idea For Other Hunter How To Do Recon☆44Updated 2 years ago
- Check if domain has bug bounty program or not☆29Updated last year
- IIS shortname scanner + bruteforce☆50Updated 11 months ago
- Filter URLs to save your time.☆59Updated 2 years ago
- A powerful bash script for massive XSS scanning leveraging Brute Logic's KNOXSS API☆66Updated last week
- a burp extension for dynamic payload generation to detect injection flaws (RCE, LFI, SQLi), creates access matrix based user sessions to …☆49Updated 2 years ago
- The fastest way to setup XSSHunter. It has options for the official and Discord/Slack Forks☆40Updated 10 months ago
- This tool allows you to find ssti vulnerability with ease!☆20Updated 2 years ago