mandiant / heyserialLinks
Programmatically create hunting rules for deserialization exploitation with multiple keywords, gadget chains, object types, encodings, and rule types
☆144Updated 2 years ago
Alternatives and similar repositories for heyserial
Users that are interested in heyserial are comparing it to the libraries listed below
Sorting:
- Determine the Palo Alto PAN-OS software version of a remote GlobalProtect portal or management interface.☆128Updated last year
- This script is a multi-threaded Okta password sprayer.☆71Updated 2 years ago
- ☆90Updated 3 years ago
- Posts about different topics☆39Updated 5 months ago
- A list of "secrets" from JWT sample code and readme files.☆57Updated 5 years ago
- ☆73Updated 7 years ago
- Lookup for interesting stuff in SMB shares☆151Updated 2 years ago
- A Red Team tool for exfiltrating sensitive data from Jira tickets.☆86Updated 2 years ago
- Slackhound allows red and blue teams to perform fast reconnaissance on Slack workspaces/organizations to quickly search user profiles, lo…☆81Updated 5 months ago
- Find the remote website version based on a git repository☆126Updated 4 years ago
- nse script to inject jndi payloads☆45Updated 4 years ago
- Static code analysis tool based on Elasticsearch☆130Updated 4 years ago
- BurpSuite Extension: A one-stop pen testing checklist and logger tool☆76Updated 3 years ago
- A Red Team tool for exfiltrating sensitive data from Confluence pages.☆114Updated 2 years ago
- Terraform resources for building HTTP, DNS, phishing, and mail server red team infrastructure☆95Updated 6 years ago
- Enumerate AD through LDAP with a collection of helpfull scripts being bundled☆142Updated this week
- Cloud, CDN, and marketing services leveraged by cybercriminals and APT groups☆60Updated 3 years ago
- Zuthaka is an open source application designed to assist red-teaming efforts, by simplifying the task of managing different APTs and othe…☆178Updated 3 years ago
- Scan DockerHub images that match a keyword to find secrets.☆61Updated 4 years ago
- Vulnerable thick client applications used as examples in the Introduction to Hacking Desktop Applications blog series☆107Updated 2 years ago
- ☆35Updated 5 years ago
- ☆148Updated 3 years ago
- cvet is a Python utility for pulling actionable vulnerabilities from cvetrends.com☆38Updated 3 years ago
- Enumerate AWS permissions and resources.☆71Updated 3 years ago
- Determine the running software version of a remote F5 BIG-IP management interface.☆69Updated 2 years ago
- A wordlist that is kept up to date with the latest headlines to provide relevant words to human society☆121Updated 3 years ago
- ☆54Updated 4 years ago
- ☆70Updated 2 years ago
- ☆139Updated 2 years ago
- A Python implementation of dafthack's MSOLSpray. A password spraying tool for Microsoft Online accounts (Azure/O365). The script logs if …☆97Updated last year