liquidsec / pyOracle2Links
A python-based padding oracle tool
☆20Updated last year
Alternatives and similar repositories for pyOracle2
Users that are interested in pyOracle2 are comparing it to the libraries listed below
Sorting:
- ☆19Updated 5 years ago
- BurpSuite's payload-generation extension aiming at applying fuzzed test-cases depending on the type of payload (integer, string, path; JS…☆40Updated 4 years ago
- Writeup of CVE-2020-15906☆49Updated 5 years ago
- The tool exfiltrates data from Couchbase database by exploiting N1QL injection vulnerabilities.☆77Updated 5 years ago
- SSRF to TCP Port Scanning, Banner and Private IP Disclosure by abusing the FTP protocol/clients☆70Updated 4 years ago
- A Burp Suite extension for headless, unattended scanning.☆36Updated 5 years ago
- PoC CVE-2020-6308☆36Updated 5 years ago
- Privilege escalation using dmidecode☆21Updated 6 years ago
- Query various sources for CVE proof-of-concepts☆53Updated 2 years ago
- ☆24Updated 3 years ago
- a parser + crawler for .DS_Store files exposed publically☆56Updated 2 years ago
- A Burp Suite extension implementing the Signing HTTP Messages draft-ietf-httpbis-message-signatures-01 draft.☆42Updated 3 years ago
- A Netcat-style backdoor for pentesting and pentest exercises☆51Updated 5 years ago
- Burp extension to generate multi-step CSRF POC.☆31Updated 6 years ago
- Some of my public exploits☆52Updated 5 years ago
- Insecure Deserialization, PDF and lab☆18Updated 6 years ago
- All about CVE-2018-14667; From what it is to how to successfully exploit it.☆50Updated 7 years ago
- A tool for creating proxy dll for hijacking☆42Updated last year
- Hacking Artifactory with server side template injection☆51Updated 5 years ago
- Remote Java classpath enumeration via deserialization☆22Updated 2 years ago
- A Burp Extender plugin that will allow you to tamper with requests containing compressed, serialized java objects.☆24Updated 6 years ago
- a Ruby implementation of Java's ObjectInputStream and ObjectOutputStream.☆16Updated 3 years ago
- ☆22Updated 3 years ago
- Webshell for Razor Syntax (C#)☆19Updated 8 years ago
- RCE in NPM VSCode Extension☆20Updated 4 years ago
- A framework for exploiting padding oracles in network-based applications☆26Updated 2 years ago
- Exploit code for CVE-2020-11579, an arbitrary file disclosure through the MySQL client in PHPKB☆24Updated last year
- DO NOT RUN THIS.☆47Updated 4 years ago
- Anvil Secure's Burp extension for signing AWS requests with SigV4☆21Updated 4 months ago
- This is a Burpsuite plugin built to enable you to import your directory bruteforcing results into burp for easy viewing later. This is an…☆36Updated 2 years ago