mandiant / heyserialLinks
Programmatically create hunting rules for deserialization exploitation with multiple keywords, gadget chains, object types, encodings, and rule types
☆144Updated 2 years ago
Alternatives and similar repositories for heyserial
Users that are interested in heyserial are comparing it to the libraries listed below
Sorting:
- This script is a multi-threaded Okta password sprayer.☆71Updated last year
- Posts about different topics☆40Updated 4 months ago
- Determine the Palo Alto PAN-OS software version of a remote GlobalProtect portal or management interface.☆128Updated last year
- ☆72Updated 7 years ago
- ☆90Updated 3 years ago
- Slackhound allows red and blue teams to perform fast reconnaissance on Slack workspaces/organizations to quickly search user profiles, lo…☆81Updated 4 months ago
- Lookup for interesting stuff in SMB shares☆151Updated 2 years ago
- A list of "secrets" from JWT sample code and readme files.☆57Updated 5 years ago
- Enumerate AWS permissions and resources.☆71Updated 3 years ago
- Static code analysis tool based on Elasticsearch☆129Updated 4 years ago
- A Red Team tool for exfiltrating sensitive data from Confluence pages.☆114Updated 2 years ago
- ☆36Updated 5 years ago
- A Red Team tool for exfiltrating sensitive data from Jira tickets.☆86Updated 2 years ago
- Find the remote website version based on a git repository☆126Updated 4 years ago
- Terraform resources for building HTTP, DNS, phishing, and mail server red team infrastructure☆95Updated 6 years ago
- nse script to inject jndi payloads☆45Updated 4 years ago
- Enumerate AD through LDAP with a collection of helpfull scripts being bundled☆143Updated 3 weeks ago
- ☆54Updated 4 years ago
- An Evil OIDC Server☆54Updated 3 years ago
- ☆94Updated 3 years ago
- Jira Secret Hunter - Helps you find credentials and sensitive contents in Jira tickets☆49Updated 3 years ago
- C# and Impacket implementation (here with Kerberos auth support) of PrintNightmare CVE-2021-1675/CVE-2021-34527☆29Updated 4 years ago
- Resolves an IP address to the cloud provider it is hosted on☆98Updated last week
- cvet is a Python utility for pulling actionable vulnerabilities from cvetrends.com☆39Updated 3 years ago
- ☆139Updated 2 years ago
- Vulnerable thick client applications used as examples in the Introduction to Hacking Desktop Applications blog series☆107Updated last year
- Reconmap's web client written in React. Manage all your pentest projects from a single place.☆51Updated last week
- ☆148Updated 3 years ago
- User enumeration and password spraying tool for testing Azure AD☆70Updated 3 years ago
- BurpSuite Extension: A one-stop pen testing checklist and logger tool☆76Updated 3 years ago