orf / xcat_app
A XPath injection demonstration application
☆21Updated 4 years ago
Alternatives and similar repositories for xcat_app:
Users that are interested in xcat_app are comparing it to the libraries listed below
- All about CVE-2018-14667; From what it is to how to successfully exploit it.☆50Updated 6 years ago
- Study about HQL injection exploitation.☆51Updated 8 years ago
- CVE-2019-9580 - StackStorm: exploiting CORS misconfiguration (null origin) to gain RCE☆32Updated 5 years ago
- BurpSuite's payload-generation extension aiming at applying fuzzed test-cases depending on the type of payload (integer, string, path; JS…☆39Updated 3 years ago
- Parse X509 certificates to get the (sub)domains in it.☆28Updated 6 years ago
- Finally, reverse/bind shells written in python, encrypted with ssl!☆39Updated 5 years ago
- A burp extension to generate sqlmap PoC from target HTTP request.☆28Updated 8 years ago
- PoC CVE-2020-6308☆34Updated 4 years ago
- Multithreaded Padding Oracle Attack on Oracle OAM (CVE-2018-2879)☆24Updated 5 years ago
- CVE-2017-10271 WEBLOGIC RCE (TESTED)☆38Updated 7 years ago
- Custom Parameter Handler extension for Burp Suite.☆43Updated 4 years ago
- sploit☆68Updated 5 years ago
- Proof of concept written in Python to show that in some situations a SSRF vulnerability can be used to steal NTLMv1/v2 hashes.☆57Updated 7 years ago
- ☆42Updated 4 years ago
- YSOSERIAL Integration with burp suite☆40Updated 3 years ago
- CVE-2020-8012, CVE-2016-10709, CVE-2017-17099, CVE-2017-18047, CVE-2019-1003000, CVE-2018-1999002☆61Updated 3 weeks ago
- F# Implementation to spawn shellcode☆47Updated 6 years ago
- A tool to analyse JMX API security level.☆43Updated 10 years ago
- Proof of concept showing how to exploit the CVE-2018-11759☆41Updated 6 years ago
- Offline Security Focus Database☆31Updated 12 years ago
- A simple scanner to find and brute force tomcat manager logins☆28Updated 5 years ago
- Vuln Liferay scanner & Exploit☆21Updated 4 years ago
- eternalrelayx☆38Updated 5 years ago
- Full TTY reverse shell over SSH☆58Updated 4 years ago
- Exploit code for CVE-2020-11579, an arbitrary file disclosure through the MySQL client in PHPKB☆22Updated last year
- Burp plugin to do random fuzzing of HTTP requests☆33Updated 8 years ago
- ☆34Updated 6 years ago
- ☆34Updated 5 years ago
- RCE in Slanger using deserialization of Ruby objects☆11Updated 5 years ago
- Burp Suite Attack Selector Plugin☆61Updated 7 years ago