nixawk / fuzzdb
Web Fuzzing Discovery and Attack Pattern Database
☆113Updated 6 years ago
Alternatives and similar repositories for fuzzdb:
Users that are interested in fuzzdb are comparing it to the libraries listed below
- YSOSERIAL Integration with burp suite☆163Updated 2 years ago
- (Deprecated) HQLmap, Automatic tool to exploit HQL injections☆227Updated 5 years ago
- Java serialization brute force attack tool.☆123Updated 7 years ago
- Takes a URL and checks the system for the tilde enum vuln and then find the files.☆170Updated 6 years ago
- Central Repo for Burp extensions☆150Updated 3 years ago
- CVE-2018-7600 - Drupal 7.x RCE☆71Updated 6 years ago
- ZAP/Burp plugin that generate script to reproduce a specific HTTP request (Intended for fuzzing or scripted attacks)☆290Updated last year
- ☆78Updated 10 years ago
- XSS Fuzzer is a tool which generates XSS payloads based on user-defined vectors and fuzzing lists.☆140Updated 6 years ago
- Add headers to all Burp requests to bypass some WAF products☆330Updated 7 years ago
- CVE-2018-2893-PoC☆103Updated 6 years ago
- Java deserialization exploitation lab.☆236Updated 5 years ago
- XXE Out of Band Server.☆170Updated last year
- Apache Tomcat Remote Code Execution on Windows☆185Updated 5 years ago
- Happy Hunting☆137Updated 6 years ago
- POC Exploit for Apache Tomcat 7.0.x CVE-2017-12615 PUT JSP vulnerability.☆111Updated 2 years ago
- Burp Suite Extensions☆126Updated 11 years ago
- An Out-of-Band XXE server for retrieving file contents over FTP.☆176Updated 4 years ago
- WebLogic Exploit☆142Updated 6 years ago
- Jenkins RCE PoC. From unauthenticated user to remote code execution, it's a hacker's dream!☆295Updated 5 years ago
- GUI Burp Plugin to ease discovering of security holes in web applications☆148Updated 7 years ago
- CVE-2018-2894 WebLogic Unrestricted File Upload Lead To RCE Check Script☆137Updated 6 years ago
- small set of scripts to practice exploit XSS and CSRF vulnerabilities☆60Updated 7 years ago
- A Burp extension for generic extraction and reuse of data within HTTP requests and responses.☆91Updated 3 years ago
- a passive scanner based on Mitmproxy and Arachni☆112Updated 7 years ago
- SQLi-Hunter is a simple HTTP / HTTPS proxy server and a SQLMAP API wrapper that makes digging SQLi easy.☆430Updated 9 months ago
- Utils☆266Updated 9 years ago
- Jsdir is a Burp Suite extension that extracts hidden paths from js files and beautifies it for further reading.☆118Updated 4 years ago
- A collection of curated Java Deserialization Exploits☆594Updated 3 years ago
- A mini webserver with FTP support for XXE payloads☆327Updated last year