no-sec-marko / java-web-vulnerabilities
Plattform to develop and experiment with existing java web attacks.
☆31Updated 7 years ago
Alternatives and similar repositories for java-web-vulnerabilities:
Users that are interested in java-web-vulnerabilities are comparing it to the libraries listed below
- ☆22Updated 3 years ago
- ☆32Updated 5 years ago
- Image Tragick Exploit Tool Using Burp Collaborator☆35Updated 10 months ago
- Burp extension that checks application requests and responses for indicators of vulnerability or targets for attack☆41Updated 2 years ago
- Vulnerable webapp testbed☆20Updated 8 years ago
- The Outlook HTML Leak Test Project☆41Updated 6 years ago
- All about CVE-2018-14667; From what it is to how to successfully exploit it.☆50Updated 6 years ago
- Multithreaded Padding Oracle Attack on Oracle OAM (CVE-2018-2879)☆24Updated 5 years ago
- This is a Burpsuite plugin built to enable you to import your directory bruteforcing results into burp for easy viewing later. This is an…☆36Updated 2 years ago
- BurpSuite's payload-generation extension aiming at applying fuzzed test-cases depending on the type of payload (integer, string, path; JS…☆39Updated 4 years ago
- A tool that can take a URL or list of URL and prints back SAML consume URL.☆36Updated 6 years ago
- Collection of different exploitation scenarios of JWT.☆21Updated 3 years ago
- Slides of the talk on Injection attacks in apps with NoSQL Backends, given at null OWASP Bangalore monthly meet on 27th April 2019☆22Updated 5 years ago
- Kubernetes Scanner☆40Updated 3 years ago
- Burp extension to filter JSON on the fly with JQ queries in the HTTP message viewer.☆47Updated 4 years ago
- Burp extension☆57Updated 6 years ago
- A Burp Suite extension for headless, unattended scanning.☆36Updated 4 years ago
- Burp extension to generate multi-step CSRF POC.☆29Updated 5 years ago
- YSOSERIAL Integration with burp suite☆40Updated 3 years ago
- Auto Recon Bash Script☆31Updated 2 months ago
- This changes the style of Burp Suite's Repeater tabs to help the testers☆29Updated 5 years ago
- ☆42Updated 4 years ago
- This is the Go Server that relays all HTTP requests and responses between clients.☆27Updated last year
- OWASP Skanda - SSRF Exploitation Framework☆38Updated 11 years ago
- A simple tool to detect wildcards domain based on Amass's wildcards detector.☆62Updated 3 years ago
- The tool exfiltrates data from Couchbase database by exploiting N1QL injection vulnerabilities.☆76Updated 4 years ago
- ☆28Updated 4 years ago
- A Burp Extender plugin that will allow you to tamper with requests containing compressed, serialized java objects.☆24Updated 6 years ago
- Oracle Database Penetration Testing Reference (10g/11g)☆36Updated 6 years ago
- Extract subdomains from rapiddns.io☆23Updated 2 years ago