nccgroup / JDSer-ngngLinks
A Burp Extender plugin, that will deserialized java objects and encode them in XML using the Xtream library.
☆26Updated 10 years ago
Alternatives and similar repositories for JDSer-ngng
Users that are interested in JDSer-ngng are comparing it to the libraries listed below
Sorting:
- A Burp Extender plugin, that will make binary soap objects readable and modifiable.☆30Updated 3 years ago
- Payload generator for Java Binary Deserialization attack with Commons FileUpload (CVE-2013-2186)☆38Updated 9 years ago
- Verification tools for CVE-2016-1287☆33Updated 8 years ago
- Burp Suite extension to perform Kerberos authentication☆105Updated last year
- Splunk Web Shell☆51Updated 10 years ago
- Implementing Kerberoast attack fully in python☆72Updated 7 years ago
- Python Implementation of a .NET Padding Oracle Assessment Tool☆30Updated 9 years ago
- .NET Deserialization Passive Scanner☆46Updated 7 years ago
- A tool to catch spoofed NBNS responses.☆50Updated 7 years ago
- Burp and ZAP plugin that display image metadata (JPEG Exif or PNG text chunk).☆15Updated 2 years ago
- Extension adds a new tab in Burp Suite called Extractor☆42Updated 6 years ago
- Study about HQL injection exploitation.☆51Updated 9 years ago
- WhiteBox CMS analysis☆68Updated 2 years ago
- Web Filter External Enumeration Tool (WebFEET)☆77Updated 11 years ago
- A tool to analyse JMX API security level.☆43Updated 11 years ago
- Highlight Burp proxy requests made by different browsers☆29Updated 8 years ago
- A C# web handler that is vulnerable to XXE with PoC. This is to serve as an example of what vulnerable C# code looks like.☆26Updated 12 years ago
- Burp extension to decode NTLM SSP headers and extract domain/host information☆32Updated 4 years ago
- A brute force program to test weak accounts configured to access a JMX Registry☆35Updated 8 years ago
- ☆56Updated 2 years ago
- Decrypt MITM SSL RDP and save to pcap☆53Updated 11 years ago
- Office 365 MFA capture toolkit☆13Updated 8 years ago
- Kerberom is a tool aimed to retrieve ARC4-HMAC'ed encrypted Tickets Granting Service (TGS) of accounts having a Service Principal Name (S…☆36Updated 7 years ago
- Spray SMB with hashes, Then psexec☆32Updated 6 years ago
- Materials related to the 2017 BSides Las Vegas presentation☆52Updated 4 years ago
- ☆83Updated 9 years ago
- AWS S3 Bucket/Object Finder☆25Updated 7 years ago
- Issues to consider when planning a red team exercise.☆15Updated 8 years ago
- ☆32Updated 10 years ago
- Python script to exploit java unserialize on t3 (Weblogic)☆61Updated 8 years ago