liquidsec / pyOracle2
A python-based padding oracle tool
☆20Updated 6 months ago
Alternatives and similar repositories for pyOracle2:
Users that are interested in pyOracle2 are comparing it to the libraries listed below
- ☆19Updated 4 years ago
- ☆22Updated 2 years ago
- Converts JBoss/Wildfly management users properties file to hashcat format compatible with mode 20☆12Updated 4 years ago
- A Burp Extender plugin that will allow you to tamper with requests containing compressed, serialized java objects.☆24Updated 5 years ago
- Supporting material for the "Hunting Bugs In The Tropics" DEFCON 30 talk☆9Updated 2 years ago
- BurpSuite's payload-generation extension aiming at applying fuzzed test-cases depending on the type of payload (integer, string, path; JS…☆39Updated 3 years ago
- A Flexible Web Shell Client, Built on Electron☆13Updated 2 years ago
- Insecure Deserialization, PDF and lab☆17Updated 5 years ago
- Helper script to deal with offsets when doing work in debuggers.☆12Updated 5 years ago
- This repository contains several AMSI bypasses. These bypasses are based on some very nice research that has been put out by some awesome…☆23Updated 2 years ago
- Just a simple SMTP server, implementation of @corpix smtpd library☆14Updated 4 years ago
- A Burp Suite extension for headless, unattended scanning.☆36Updated 4 years ago
- Burp extension to generate multi-step CSRF POC.☆29Updated 5 years ago
- Exactly what it sounds like, which is something rad☆21Updated 2 years ago
- Nmap script to check vulnerability CVE-2021-21972☆28Updated 3 years ago
- A simple grep user interface for searching code which can be used for SAST.☆8Updated 5 years ago
- Writeup of CVE-2020-15906☆46Updated 4 years ago
- ☆33Updated 3 weeks ago
- This is a Burpsuite plugin built to enable you to import your directory bruteforcing results into burp for easy viewing later. This is an…☆36Updated last year
- Simple proxy which applies filters (default or custom) to your requests and responses, while you browse a website.☆8Updated 3 years ago
- PoC CVE-2020-6308☆34Updated 4 years ago
- String or worldlist encoder for use in fuzzing or web application testing☆18Updated 5 years ago
- Collection of different exploitation scenarios of JWT.☆21Updated 3 years ago
- Multithreaded Padding Oracle Attack on Oracle OAM (CVE-2018-2879)☆24Updated 5 years ago
- Security Advisories☆10Updated 5 years ago
- A tool to quickly scrape a website and generate a wordlist. Multithreading capable.☆11Updated 3 years ago
- ☆20Updated 5 years ago
- Parse X509 certificates to get the (sub)domains in it.☆28Updated 6 years ago
- Abusing SketchUp to make persistence on Windows☆21Updated 5 years ago
- Spin up a reverse proxy quickly on Heroku☆13Updated 4 years ago