mm0r1 / exploits
Pwn stuff.
☆1,772Updated 2 years ago
Alternatives and similar repositories for exploits:
Users that are interested in exploits are comparing it to the libraries listed below
- This tool generates gopher link for exploiting SSRF and gaining RCE in various servers☆3,043Updated 2 years ago
- PHPGGC is a library of PHP unserialize() payloads along with a tool to generate them, from command line or programmatically.☆3,433Updated this week
- HackBar plugin for Burpsuite☆1,562Updated 4 years ago
- weblogic 漏洞扫描工具。目前包含对以下漏洞的检测能力:CVE-2014-4210、CVE-2016-0638、CVE-2016-3510、CVE-2017-3248、CVE-2017-3506、CVE-2017-10271、CVE-2018-2628、CVE-201…☆2,036Updated last year
- Redis(<=5.0.5) RCE☆1,046Updated last year
- 🕷️ A `.git` folder exploiting tool that is able to restore the entire Git repository, including stash, common branches and common tags.☆1,505Updated 3 months ago
- Rip web accessible (distributed) version control systems: SVN/GIT/HG...☆1,725Updated 9 months ago
- SSRF (Server Side Request Forgery) testing resources☆2,396Updated 6 months ago
- generate CobaltStrike's cross-platform payload☆2,382Updated last year
- Redis 4.x/5.x RCE☆954Updated 3 years ago
- A .DS_Store file disclosure exploit. It parses .DS_Store file and downloads files recursively.☆1,624Updated last year
- Awesome Burp Suite Resources. 400+ open source Burp plugins, 400+ posts and videos.☆1,027Updated 5 years ago
- 一个各种方式突破Disable_functions达到命令执行的shell☆1,189Updated last year
- A modern multiple reverse shell sessions manager written in go☆1,581Updated this week
- Code-Audit-Challenges☆981Updated 6 years ago
- Neo-reGeorg is a project that seeks to aggressively refactor reGeorg☆3,040Updated 2 months ago
- Linux、macOS、Windows Kernel privilege escalation vulnerability collection, with compilation environment, demo GIF map, vulnerability detai…☆2,980Updated 2 years ago
- bypass disable_functions via LD_PRELOA (no need /usr/sbin/sendmail)☆1,153Updated 3 years ago
- MySQL fake server for read files of connected clients☆596Updated 7 years ago
- Venom - A Multi-hop Proxy for Penetration Testers☆2,069Updated 2 years ago
- Webshell && Backdoor Collection☆1,878Updated 5 years ago
- JexBoss: Jboss (and Java Deserialization Vulnerabilities) verify and EXploitation Tool☆2,457Updated 5 years ago
- Next-Generation Linux Kernel Exploit Suggester☆1,903Updated 2 years ago
- A collection of pentest and development tips☆1,108Updated 2 years ago
- XssPayload List . Usage:☆720Updated 5 years ago
- Proof-of-Concept exploits for CVEs found by the team at Rhino Security Labs☆839Updated 2 weeks ago
- Tool for automatic exploitation of XXE vulnerability using direct and different out of band methods.☆1,618Updated 4 months ago
- Burpsuite Extension to bypass 403 restricted directory☆1,611Updated last year
- Flask Session Cookie Decoder/Encoder☆682Updated 2 months ago
- Server-Side Template Injection and Code Injection Detection and Exploitation Tool☆3,919Updated 11 months ago