mandiant / heyserial
Programmatically create hunting rules for deserialization exploitation with multiple keywords, gadget chains, object types, encodings, and rule types
☆142Updated last year
Alternatives and similar repositories for heyserial:
Users that are interested in heyserial are comparing it to the libraries listed below
- Determine the Palo Alto PAN-OS software version of a remote GlobalProtect portal or management interface.☆127Updated 9 months ago
- This script is a multi-threaded Okta password sprayer.☆70Updated last year
- ☆148Updated 3 years ago
- Determine the running software version of a remote F5 BIG-IP management interface.☆66Updated last year
- Static code analysis tool based on Elasticsearch☆129Updated 4 years ago
- ☆67Updated 6 years ago
- Zuthaka is an open source application designed to assist red-teaming efforts, by simplifying the task of managing different APTs and othe…☆176Updated 2 years ago
- Enumerate AWS permissions and resources.☆68Updated 2 years ago
- Lookup for interesting stuff in SMB shares☆149Updated last year
- Creates and sends fake meeting invite☆59Updated 3 years ago
- A simple remote scanner for Atlassian Jira☆120Updated 2 years ago
- BurpSuite Extension: A one-stop pen testing checklist and logger tool☆75Updated 2 years ago
- Find the remote website version based on a git repository☆126Updated 3 years ago
- Posts about different topics☆36Updated last year
- Terraform resources for building HTTP, DNS, phishing, and mail server red team infrastructure☆95Updated 5 years ago
- Merge multiple nMap xml files into one☆50Updated 5 years ago
- HoneyCreds network credential injection to detect responder and other network poisoners.☆217Updated 3 years ago
- A list of "secrets" from JWT sample code and readme files.☆55Updated 4 years ago
- ☆134Updated 2 years ago
- ☆117Updated 3 years ago
- a deterministic finite automata ranker☆70Updated 3 years ago
- Extensive code infrastructure for finding unintended information leaks in files, git repositories and much more.☆28Updated 2 years ago
- A Burp Suite Extension for parsing Project Files from the CLI.☆87Updated 6 months ago
- Recurrent Neural Network SubDomain Discovery Tool☆95Updated 2 years ago
- Exploit a vulnerable Spring application with the Spring4Shell (CVE-2022-22965) Vulnerability.☆44Updated 3 years ago
- Vulnerable thick client applications used as examples in the Introduction to Hacking Desktop Applications blog series☆102Updated last year
- nse script to inject jndi payloads☆46Updated 3 years ago
- CoWitness is a powerful web application testing tool that enhances the accuracy and efficiency of your testing efforts. It allows you to …☆125Updated last year
- A Red Team tool for exfiltrating sensitive data from Confluence pages.☆111Updated 2 years ago
- Brute force attack tool for Azure AD Autologon/Seamless SSO - Source: https://arstechnica.com/information-technology/2021/09/new-azure-ac…☆101Updated 9 months ago