mveytsman / dilettanteLinks
Maven central doesn't do SSL when serving you JARs. Dilettante is a MiTM proxy for exploiting that.
☆160Updated 9 months ago
Alternatives and similar repositories for dilettante
Users that are interested in dilettante are comparing it to the libraries listed below
Sorting:
- JMSDigger is JMS API basedEnterprise Messaging Application assessment tool☆30Updated 11 years ago
- Burp Suite extension to generate Intruder payloads using Radamsa☆89Updated 8 years ago
- Nail in the JKS coffin - Cracking passwords of private key entries in a JKS file☆188Updated 5 years ago
- ☆128Updated 9 years ago
- A set of tools made to assist in penetration testing GWT applications. Additional details about these tools can be found on my OWASP Apps…☆237Updated 5 years ago
- A simple tool to convert the IP to a DWORD IP☆140Updated 3 years ago
- Mass scanner for the Java serialize bug☆152Updated 5 months ago
- proxy poc implementation of STARTTLS stripping attacks☆171Updated 4 years ago
- An extension for BurpSuite that highlights SSO messages in Burp's proxy window..☆118Updated 4 years ago
- Jaqen - Simple DNS rebinding☆75Updated 7 years ago
- A practical tool for bytecode manipulation and creating Managed Code Rootkits (MCRs) in the Java Runtime Environment☆58Updated 5 years ago
- ☆92Updated 6 years ago
- Very crude and poorly written HTTP(s) and SMTP bin☆94Updated 4 years ago
- GPG Reaper - Obtain/Steal/Restore GPG Private Keys from gpg-agent cache/memory☆95Updated 7 years ago
- Serial Whitelist Application Trainer☆30Updated 6 years ago
- A collection of my quick and dirty scripts for vulnerability POC and detections☆76Updated 5 months ago
- A DNS connectback shell executed by strings in payloads.txt☆102Updated 2 years ago
- The Guppy Proxy (GUI Pappy)☆142Updated 6 years ago
- Code Review Audit Script Scanner☆142Updated last month
- An example of obtaining RCE via Redis and CSRF☆76Updated 9 years ago
- Identify vulnerable libraries in Maven dependencies☆46Updated 2 years ago
- TLS Redirection☆120Updated 8 years ago
- A PoC that shows that Web Vulnerabilities can indeed be interesting☆20Updated 7 years ago
- Unicode Security Guide☆120Updated 8 years ago
- AutoTriageBot automatically verifies, deduplicates, and suggests payouts for incoming HackerOne reports.☆56Updated 3 years ago
- Burp extension to perform Java Deserialization Attacks☆215Updated last year
- A visual fuzzer written in NodeJS to find Zalgo characters☆53Updated 7 years ago
- "Repeater" style XSS post-exploitation tool for mass browser control. Primarily a PoC to show why HttpOnly flag isn't a complete protecti…☆137Updated 7 years ago
- Growing list of potentially dangerous PHP functions☆52Updated 6 years ago
- Java Agent which mitigates deserialisation attacks by making certain classes unserializable☆191Updated 9 years ago