nodyhub / zipslipperLinks
Create tar/zip archives that try to exploit zipslip vulnerability.
β48Updated last year
Alternatives and similar repositories for zipslipper
Users that are interested in zipslipper are comparing it to the libraries listed below
Sorting:
- A steampipe plugin to query projectdiscovery.io tools.β27Updated last year
- π Visualize and explore IaC βοΈ Create and share notes in VS Code π€ Sync notes and findings in real-time with friendsβ73Updated last year
- A set of scripts to install a Burp Collaborator Server in a docker environment, using a LetsEncrypt wildcard certificate in as simple a pβ¦β30Updated last month
- An Evil OIDC Serverβ54Updated 3 years ago
- Simple Command Line Tool to Enumerate Slack Workspace Names from Slack Webhook URLs.β42Updated 2 years ago
- Simple PoC for demonstrating Race Conditions on Websocketsβ55Updated 2 years ago
- Hijack a slack bot to phish your way inβ57Updated 5 months ago
- β94Updated 3 weeks ago
- β50Updated last year
- A Python-based tool to create zip, tar and cpio archives to exploit common archive library issues and developer mistakesβ43Updated last month
- moniorg is a tool that leverages crt.sh website to monitor domains of a targetβ47Updated 2 years ago
- Additional active scan checks for BURPβ28Updated last year
- A GitHub Actions Supply Chain CTF / Goatβ30Updated last week
- Determine privileges from cloud credentials via brute-force testing.β67Updated last year
- Exploits Unauth Docker APIβ43Updated 8 months ago
- Java archive implant toolkit.β61Updated 8 months ago
- Find what egress ports are allowedβ45Updated last month
- A tool for secrets management, encryption as a service, and privileged access managementβ13Updated 5 months ago
- self-hosted Azure OSINT toolβ31Updated 6 months ago
- β21Updated 4 months ago
- NullSection is an Anti-Reversing tool that applies a technique that overwrites the section header with nullbytes.β67Updated last year
- β39Updated last year
- A not-curated list of cloud hacking labsβ26Updated last year
- Manage attack surface data on Elasticsearchβ23Updated 2 years ago
- python3 scripts to help with aws triage needsβ15Updated 3 years ago
- Burp Suite extension for testing Passkey systems.β75Updated 9 months ago
- Proof-of-concept code for research into GitHub Actions Cache poisoning.β21Updated 10 months ago
- A python script to create a fake GitHub runner and hijack pipeline jobs to leak CI/CD secrets.β28Updated last year
- β60Updated 2 years ago
- dauthi is a tool that takes advantage of API functionality across a variety of MDM solutions to perform user enumeration and single-factoβ¦β43Updated last year