orf / xcat_appLinks
A XPath injection demonstration application
☆22Updated 4 years ago
Alternatives and similar repositories for xcat_app
Users that are interested in xcat_app are comparing it to the libraries listed below
Sorting:
- All about CVE-2018-14667; From what it is to how to successfully exploit it.☆50Updated 6 years ago
 - A collection of scripts used to interact with the Burp Rest API☆55Updated 6 years ago
 - Kubernetes Scanner☆40Updated 3 years ago
 - BurpSuite's payload-generation extension aiming at applying fuzzed test-cases depending on the type of payload (integer, string, path; JS…☆40Updated 4 years ago
 - Endpoint for Out-of-Band Exfiltration (DNS & HTTP)☆93Updated 6 years ago
 - Finally, reverse/bind shells written in python, encrypted with ssl!☆39Updated 6 years ago
 - DNS File EXfiltration☆46Updated last year
 - GodOfWar - Malicious Java WAR builder with built-in payloads☆125Updated 6 years ago
 - Cyberdelia, a Collection of Command and Control frameworks☆64Updated 6 years ago
 - ☆23Updated 4 years ago
 - This is a Burpsuite plugin built to enable you to import your directory bruteforcing results into burp for easy viewing later. This is an…☆36Updated 2 years ago
 - Writeup of CVE-2020-15906☆49Updated 5 years ago
 - Some minor changes to Chimichurri to get it to compile on modern machines☆44Updated 10 years ago
 - CVE-2020-1938漏洞复现☆38Updated 5 years ago
 - Multithreaded Padding Oracle Attack on Oracle OAM (CVE-2018-2879)☆25Updated 6 years ago
 - Reverse or bind shell catcher which uprgrades the caught shell to be more like a regular shell☆27Updated 6 years ago
 - ☆104Updated 5 years ago
 - Pentest TeamCity using Metasploit☆45Updated 4 years ago
 - Purpose of this repository is to help all the beginner and experienced professionals to understand,learn and share new tricks for the com…☆32Updated 7 years ago
 - Exploit for Pulse Connect Secure SSL VPN arbitrary file read vulnerability (CVE-2019-11510)☆137Updated 5 years ago
 - a parser + crawler for .DS_Store files exposed publically☆54Updated 2 years ago
 - .NET Deserialization Passive Scanner☆46Updated 7 years ago
 - Parse X509 certificates to get the (sub)domains in it.☆28Updated 7 years ago
 - A basic AIX enumeration guide for penetration testers/red teamers☆33Updated 8 years ago
 - A tool for creating proxy dll for hijacking☆42Updated last year
 - Burp extension to decode NTLM SSP headers and extract domain/host information☆32Updated 4 years ago
 - ☆29Updated 7 years ago
 - Helper scripts to assist penetration testing and exploit development☆35Updated 10 months ago
 - YSOSERIAL Integration with burp suite☆41Updated 3 years ago
 - BURP extension providing a set of values for the HTTP request "Host" header for the "BURP Intruder" in order to abuse virtual host resolu…☆60Updated 8 years ago