pentagridsec / archive_pwnLinks
A Python-based tool to create zip, tar and cpio archives to exploit common archive library issues and developer mistakes
☆43Updated 2 years ago
Alternatives and similar repositories for archive_pwn
Users that are interested in archive_pwn are comparing it to the libraries listed below
Sorting:
- Create tar/zip archives that try to exploit zipslip vulnerability.☆48Updated last year
- An Evil OIDC Server☆54Updated 3 years ago
- Additional active scan checks for BURP☆28Updated last year
- Simple PoC for demonstrating Race Conditions on Websockets☆55Updated 2 years ago
- ☆21Updated 2 months ago
- Quick WAF "paranoid" Doctor Evaluation | WAFPARAN01D3 Tool☆24Updated 3 years ago
- A tool to parse, deduplicate, and query multiple port scans.☆59Updated 2 years ago
- ☆60Updated 2 years ago
- ☆116Updated 2 years ago
- Exploit POC for CVE-2024-22026 affecting Ivanti EPMM "MobileIron Core"☆16Updated last year
- ☆27Updated 2 years ago
- ☆19Updated 11 months ago
- self-hosted Azure OSINT tool☆31Updated 4 months ago
- Find what egress ports are allowed☆43Updated 2 years ago
- ☆26Updated 3 years ago
- A steampipe plugin to query projectdiscovery.io tools.☆27Updated last year
- A set of scripts to install a Burp Collaborator Server in a docker environment, using a LetsEncrypt wildcard certificate in as simple a p…☆30Updated 9 months ago
- ☆18Updated last year
- HazProne is a Cloud Pentesting Framework that emulates close to Real-World Scenarios by deploying Vulnerable-By-Demand AWS resources enab…☆40Updated 3 years ago
- Mitigation validation utility for the Ivanti Connect Around attack chain. Runs multiple checks. CVE-2023-46805, CVE-2024-21887.☆12Updated last year
- Finding sensitive information in the trimmed parts of cropped images☆30Updated 3 years ago
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆33Updated 8 months ago
- Supporting material for the "Hunting Bugs In The Tropics" DEFCON 30 talk☆10Updated 3 years ago
- A National Vulnerability Database (NVD) API query tool☆17Updated 2 years ago
- ☆25Updated last week
- cvet is a Python utility for pulling actionable vulnerabilities from cvetrends.com☆39Updated 3 years ago
- Command line fuzzer and bruteforcer 🌪 wfuzz for command☆90Updated 3 years ago
- an Evil Java RMI Registry.☆51Updated 2 years ago
- ☆12Updated 3 years ago
- Docker container escape enumeration tool.☆11Updated 4 years ago