orangetw / bug-bounty-referenceLinks
Inspired by https://github.com/djadmin/awesome-bug-bounty, a list of bug bounty write-up that is categorized by the bug nature
☆56Updated 9 years ago
Alternatives and similar repositories for bug-bounty-reference
Users that are interested in bug-bounty-reference are comparing it to the libraries listed below
Sorting:
- ☆162Updated 8 years ago
- YSOSERIAL Integration with burp suite☆166Updated 3 years ago
- Script to test if a server is vulnerable to the JetLeak vulnerability☆144Updated 9 years ago
- ☆231Updated 10 years ago
- Java serialization brute force attack tool.☆123Updated 8 years ago
- CVE-2018-7600 - Drupal 7.x RCE☆72Updated 7 years ago
- XSS Fuzzer is a tool which generates XSS payloads based on user-defined vectors and fuzzing lists.☆140Updated 6 years ago
- ☆58Updated 9 years ago
- Tool for CVE-2018-16323☆82Updated 6 years ago
- Web Fuzzing Discovery and Attack Pattern Database☆114Updated 7 years ago
- Central Repo for Burp extensions☆151Updated 4 years ago
- Java deserialization exploitation lab.☆236Updated 6 years ago
- ZAP/Burp plugin that generate script to reproduce a specific HTTP request (Intended for fuzzing or scripted attacks)☆296Updated 2 years ago
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆34Updated 9 years ago
- Utils☆275Updated 9 years ago
- Happy Hunting☆138Updated 6 years ago
- Security checks pack for Burp Suite☆140Updated 7 years ago
- Spring messaging STOMP protocol RCE☆113Updated 7 years ago
- 各种漏洞poc、Exp的收集或编写☆32Updated 9 years ago
- Deemon is a tool to detect CSRF in web applications. Deemon has been used for the paper "Deemon: Detecting CSRF with Dynamic Analysis and…☆75Updated 7 years ago
- Jsdir is a Burp Suite extension that extracts hidden paths from js files and beautifies it for further reading.☆120Updated 5 years ago
- XXE Out of Band Server.☆172Updated 2 years ago
- Facebook Bug Bounties☆105Updated 4 years ago
- Collection of CTF challenges I made☆52Updated 11 months ago
- 2 web tasks from ZeroNights HackQuest 2016☆50Updated 8 years ago
- CVE-2018-7600 Drupal RCE☆114Updated 7 years ago
- Lab for exploring SSRF vulnerabilities☆248Updated 4 years ago
- Apache Tomcat Remote Code Execution on Windows☆189Updated 6 years ago
- An example project that exploits the default typing issue in Jackson-databind via Spring application contexts and expressions☆124Updated 7 years ago
- A tool for detecting XML External Entity (XXE) vulnerabilities in Java applications☆72Updated 11 years ago