nccgroup / RFC-Security-ResearchLinks
Paper, data and code from Investigating Potential Security Vulnerability Manifestation through Various Analyses & Inferences Regarding Internet RFCs
☆18Updated 4 years ago
Alternatives and similar repositories for RFC-Security-Research
Users that are interested in RFC-Security-Research are comparing it to the libraries listed below
Sorting:
- A collection of python apps and shell scripts to email an xlsx spreadsheet of new vulnerabilities in the NIST CVE database and their asso…☆12Updated 4 years ago
- A playground to practice SSRF Attacks against web apps☆17Updated 6 years ago
- A bash script that automates the scanning of a target network for HTTP resources through XXE☆38Updated 4 years ago
- Clickjacking PoC Generator☆35Updated 4 years ago
- Quick WAF "paranoid" Doctor Evaluation | WAFPARAN01D3 Tool☆25Updated 3 years ago
- String or worldlist encoder for use in fuzzing or web application testing☆19Updated 5 years ago
- Insecure Vulnerable Android Application that helps to learn hacing and securing apps☆21Updated 9 years ago
- A parallel scanner that utilises axiom to spin up servers and parallel scan using masscan.☆16Updated 5 years ago
- ☆29Updated 8 years ago
- Timeinator is an extension for Burp Suite that can be used to perform timing attacks over an unreliable network such as the internet.☆22Updated 2 years ago
- Cloud metadata extraction tools and scripts☆34Updated 2 years ago
- Tools for auditing WAFS☆19Updated 3 years ago
- A multi-threaded scanner that helps identify CORS flaws/misconfigurations☆19Updated 5 years ago
- A compilation of network scanning strategies to find vulnerable devices☆73Updated 2 years ago
- Docker image for reconftw, a simple script intended to perform a full recon on an objective with multiple subdomains☆10Updated 4 years ago
- The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters☆14Updated 3 years ago
- Bug Bounty Clipboard☆17Updated 5 years ago
- CloudSpec is an open source tool for validating your resources in your cloud providers using a logical language.☆26Updated 3 years ago
- ☆24Updated last year
- This Burp Suite extension enables the generation of shareable links to specific requests which other Burp Suite users can import.☆12Updated 3 years ago
- Exploit for win10 SMB3.1☆17Updated 5 years ago
- Dependency Combobulator☆93Updated last year
- Data exfiltration utility for testing detection capabilities☆57Updated 3 years ago
- An information gathering tool to collect git emails in version control host services☆11Updated 6 years ago
- Mole is a framework for identifying and exploiting out-of-band application vulnerabilities.☆57Updated 4 years ago
- OWASP ZAP add-on to detect reflected parameter vulnerabilities efficiently☆12Updated 4 years ago
- Burp Suite Pro extension☆10Updated 8 years ago
- ZAP plugin demonstrating custom view for WebSocket messages.☆13Updated 3 years ago
- All the information provided on this site is for educational purposes only.☆18Updated last year
- ☆19Updated 8 years ago