Repository to hold materials for DefCon_RESTing presentation by Dinis, Abe and Alvaro
☆53Aug 5, 2013Updated 12 years ago
Alternatives and similar repositories for DefCon_RESTing
Users that are interested in DefCon_RESTing are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Exploit PoC for Spring RCE issue (CVE-2011-2894)☆44Dec 17, 2023Updated 2 years ago
- Another plugin for CRLF vulnerability detection☆25Jan 25, 2017Updated 9 years ago
- cve-2014-0130 rails directory traversal vuln☆18May 15, 2017Updated 9 years ago
- Java Deserialization☆27Oct 21, 2016Updated 9 years ago
- POC for XStream RCE☆13Dec 23, 2013Updated 12 years ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- ☆27Mar 6, 2021Updated 5 years ago
- ☆72Nov 20, 2017Updated 8 years ago
- [WIP] a simple UI for Vulhub☆16Jun 10, 2021Updated 5 years ago
- Exploit for Adobe Coldfusion BlazeDS Java Object Deserialization RCE☆11Feb 7, 2018Updated 8 years ago
- spring mvc cve-2014-3625☆32Mar 11, 2016Updated 10 years ago
- Experimental Java agent to stomp on things.☆15Feb 10, 2019Updated 7 years ago
- 2 web tasks from ZeroNights HackQuest 2016☆50Mar 24, 2017Updated 9 years ago
- A backdoor embedded with Twitter Player Card☆12May 1, 2017Updated 9 years ago
- A custom web vulnerability scanner☆27Nov 17, 2018Updated 7 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- Jira Information Gatherer☆28Dec 3, 2017Updated 8 years ago
- Struts2の脆弱性S2-045, S2-055 および Jackson の脆弱性 CVE-2017-7525, CVE-2017-15095 の調査報告☆107Dec 13, 2017Updated 8 years ago
- Collection of bypass gadgets to extend and wrap ysoserial payloads☆390Apr 16, 2022Updated 4 years ago
- Primitive tool for exploring/querying Java classes via the Tinkerpop Gremlin graph traversal language☆109May 12, 2016Updated 10 years ago
- PoC for Scala and Groovy☆14Apr 4, 2016Updated 10 years ago
- bypass JEP290 RaspHook code☆63Sep 21, 2020Updated 5 years ago
- PoC of Remote Command Execution via Log injection on SAP NetWeaver AS JAVA CRM☆52Mar 14, 2018Updated 8 years ago
- Proof of Work generator☆12Jun 26, 2019Updated 7 years ago
- A collection of published exploits and proof-of-concept code.☆20Dec 19, 2017Updated 8 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Mogwai Java Management Extensions (JMX) Exploitation Toolkit☆175Jul 21, 2016Updated 9 years ago
- when pass change ,send the pass to remote host☆20Jan 19, 2020Updated 6 years ago
- Place for random PoCs☆18May 21, 2020Updated 6 years ago
- An example project that exploits the default typing issue in Jackson-databind via Spring application contexts and expressions☆122Jan 9, 2018Updated 8 years ago
- Burp Suite AMF Extension☆49Sep 24, 2018Updated 7 years ago
- ☆35May 22, 2026Updated last month
- Java Message Exploitation Tool☆509Jul 6, 2022Updated 4 years ago
- Apache Karaf XXE Vulnerability (CVE-2018-11788)☆38Jan 6, 2019Updated 7 years ago
- Study about HQL injection exploitation.☆52May 15, 2016Updated 10 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- A simple test of fuzzing Java with AFL and GCJ☆16Jan 31, 2018Updated 8 years ago
- A Java serializer in JavaScript☆81May 21, 2018Updated 8 years ago
- Tool for CVE-2018-16323☆83Jan 17, 2019Updated 7 years ago
- Sample codes written for the Hackers to Hackers Conference magazine 2017 (H2HC).☆523Mar 11, 2022Updated 4 years ago
- Exploiting Python PIL Module Command Execution Vulnerability☆56Nov 29, 2021Updated 4 years ago
- A collection of curated Java Deserialization Exploits☆594May 16, 2021Updated 5 years ago
- CVE-2020-1958 PoC☆22Apr 11, 2020Updated 6 years ago