mandiant / heyserialLinks
Programmatically create hunting rules for deserialization exploitation with multiple keywords, gadget chains, object types, encodings, and rule types
☆144Updated 2 years ago
Alternatives and similar repositories for heyserial
Users that are interested in heyserial are comparing it to the libraries listed below
Sorting:
- This script is a multi-threaded Okta password sprayer.☆72Updated last year
- Determine the Palo Alto PAN-OS software version of a remote GlobalProtect portal or management interface.☆129Updated last year
- Posts about different topics☆40Updated 3 weeks ago
- ☆67Updated 6 years ago
- A list of "secrets" from JWT sample code and readme files.☆55Updated 4 years ago
- nse script to inject jndi payloads☆46Updated 3 years ago
- A Red Team tool for exfiltrating sensitive data from Confluence pages.☆112Updated 2 years ago
- BurpSuite Extension: A one-stop pen testing checklist and logger tool☆76Updated 3 years ago
- ☆90Updated 3 years ago
- Slackhound allows red and blue teams to perform fast reconnaissance on Slack workspaces/organizations to quickly search user profiles, lo…☆82Updated last month
- Lookup for interesting stuff in SMB shares☆149Updated 2 years ago
- ☆94Updated 2 years ago
- A Red Team tool for exfiltrating sensitive data from Jira tickets.☆85Updated 2 years ago
- Terraform resources for building HTTP, DNS, phishing, and mail server red team infrastructure☆95Updated 6 years ago
- C# and Impacket implementation (here with Kerberos auth support) of PrintNightmare CVE-2021-1675/CVE-2021-34527☆29Updated 4 years ago
- cvet is a Python utility for pulling actionable vulnerabilities from cvetrends.com☆39Updated 3 years ago
- Static code analysis tool based on Elasticsearch☆129Updated 4 years ago
- Collection of Azure Tools to Pull down for Attacking an Environment + quick tips and other useful information☆74Updated 4 months ago
- Determine the running software version of a remote F5 BIG-IP management interface.☆67Updated last year
- Find the remote website version based on a git repository☆125Updated 4 years ago
- Enumerate AWS permissions and resources.☆70Updated 3 years ago
- GoldenSAML Attack Libraries and Framework☆73Updated last year
- A wordlist that is kept up to date with the latest headlines to provide relevant words to human society☆122Updated 3 years ago
- Enumerate AD through LDAP with a collection of helpfull scripts being bundled☆145Updated this week
- Vulnerable thick client applications used as examples in the Introduction to Hacking Desktop Applications blog series☆102Updated last year
- A Python implementation of dafthack's MSOLSpray. A password spraying tool for Microsoft Online accounts (Azure/O365). The script logs if …☆93Updated last year
- ☆54Updated 4 years ago
- User enumeration and password spraying tool for testing Azure AD☆70Updated 3 years ago
- Jira Secret Hunter - Helps you find credentials and sensitive contents in Jira tickets☆48Updated 2 years ago
- offensive notes & resources☆43Updated 5 months ago