mpgn / Padding-oracle-attackLinks
Padding oracle attack against PKCS7
☆332Updated 3 years ago
Alternatives and similar repositories for Padding-oracle-attack
Users that are interested in Padding-oracle-attack are comparing it to the libraries listed below
Sorting:
- Automated script for performing Padding Oracle attacks☆803Updated last year
- ☆266Updated 6 years ago
- Poodle (Padding Oracle On Downgraded Legacy Encryption) attack CVE-2014-3566☆264Updated 2 years ago
- Crack the shared secret of a HS256-signed JWT☆255Updated 2 years ago
- 🔓 CLI tool and library to execute padding oracle attacks easily, with support for concurrent network requests and an elegant UI.☆220Updated 3 years ago
- Contents for Node.Js Security Course☆343Updated 5 years ago
- 🏴☠️ Bypass Same Origin Policy with DNS-rebinding to retrieve local server files 🏴☠️☆204Updated 6 years ago
- Use HTTP Smuggling Lab to learn HTTP Smuggling.☆345Updated 3 years ago
- A cheat sheet for attacking SQLite via SQLi☆102Updated 9 years ago
- A portable, padding oracle exploit API☆331Updated 3 years ago
- Linux privilege escalation exploit via snapd (CVE-2019-7304)☆684Updated 6 years ago
- Simple DNS Rebinding Service☆721Updated 6 years ago
- Debian OpenSSL Predictable PRNG (CVE-2008-0166)☆410Updated 3 years ago
- SambaCry exploit and vulnerable container (CVE-2017-7494)☆381Updated 3 years ago
- ☆1,175Updated last year
- Script to recover mt_rand()'s seed with only two outputs and without any bruteforce.☆159Updated 6 years ago
- notes and code on past CTFs☆105Updated 4 years ago
- A tiny and cute URL fuzzer☆402Updated 3 years ago
- A Python implementation that facilitates finding timeless timing attack vulnerabilities.☆129Updated 8 months ago
- Create tar/zip archives that can exploit directory traversal vulnerabilities☆1,037Updated 4 years ago
- XXE Out of Band Server.☆173Updated 2 years ago
- Issues with WebSocket reverse proxying allowing to smuggle HTTP requests☆388Updated last year
- research☆152Updated last year
- [Linux] Two Privilege Escalation techniques abusing sudo token☆732Updated 6 years ago
- ZAP/Burp plugin that generate script to reproduce a specific HTTP request (Intended for fuzzing or scripted attacks)☆298Updated 2 years ago
- Shellshock exploit + vulnerable environment☆227Updated 2 years ago
- Proof Of Concept of the BEAST attack against SSL/TLS CVE-2011-3389☆80Updated 7 years ago
- A mini webserver with FTP support for XXE payloads☆342Updated 2 years ago
- Try to find the password of a file that was encrypted with the 'openssl' command.☆233Updated last year
- Some of my exploits.☆598Updated 4 years ago