pentagridsec / archive_pwnLinks
A Python-based tool to create zip, tar and cpio archives to exploit common archive library issues and developer mistakes
☆43Updated 3 weeks ago
Alternatives and similar repositories for archive_pwn
Users that are interested in archive_pwn are comparing it to the libraries listed below
Sorting:
- Create tar/zip archives that try to exploit zipslip vulnerability.☆48Updated last year
- An Evil OIDC Server☆54Updated 3 years ago
- Simple PoC for demonstrating Race Conditions on Websockets☆55Updated 2 years ago
- Take domains on stdin and output them on stdout if they get resolved☆32Updated 3 years ago
- Quick WAF "paranoid" Doctor Evaluation | WAFPARAN01D3 Tool☆24Updated 4 years ago
- ☆60Updated 2 years ago
- Additional active scan checks for BURP☆28Updated last year
- Command line fuzzer and bruteforcer 🌪 wfuzz for command☆91Updated 3 years ago
- Automated privilege escalation of the world's most popular Docker images.☆69Updated 2 years ago
- A steampipe plugin to query projectdiscovery.io tools.☆27Updated last year
- A collection of my Semgrep rules☆50Updated 2 years ago
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆35Updated 9 months ago
- cvet is a Python utility for pulling actionable vulnerabilities from cvetrends.com☆39Updated 3 years ago
- ☆116Updated 2 years ago
- Provides an overview of the inner file structure of a PDF☆25Updated 3 years ago
- ☆27Updated 2 years ago
- ☆93Updated last week
- A tool to parse, deduplicate, and query multiple port scans.☆58Updated 2 years ago
- ☆42Updated 8 months ago
- ☆21Updated 3 months ago
- moniorg is a tool that leverages crt.sh website to monitor domains of a target☆47Updated 2 years ago
- 🌐 Visualize and explore IaC ✒️ Create and share notes in VS Code 🤝 Sync notes and findings in real-time with friends☆73Updated last year
- wordlists for password cracking☆28Updated 3 years ago
- masscan with exclusive excludes☆58Updated 2 years ago
- IVRE's fork of the famous TCP port scanner. See below for details.☆39Updated 10 months ago
- ☆19Updated last year
- HazProne is a Cloud Pentesting Framework that emulates close to Real-World Scenarios by deploying Vulnerable-By-Demand AWS resources enab…☆40Updated 3 years ago
- Proof-of-concept code for research into GitHub Actions Cache poisoning.☆21Updated 9 months ago
- A wrapper script for https://sploitus.com to scrape query results for tools and exploits☆14Updated 6 years ago
- ☆27Updated 2 years ago