pentagridsec / archive_pwn
A Python-based tool to create zip, tar and cpio archives to exploit common archive library issues and developer mistakes
☆42Updated last year
Related projects ⓘ
Alternatives and complementary repositories for archive_pwn
- ☆40Updated last month
- Create tar/zip archives that try to exploit zipslip vulnerability.☆45Updated 2 months ago
- Additional active scan checks for BURP☆20Updated last month
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆30Updated last year
- List of fresh and validated DNS resolvers updated every 12h.☆21Updated this week
- An Evil OIDC Server☆51Updated 2 years ago
- Exploit for Symfony CVE-2024-50340 (forked eos)☆25Updated last week
- Enumerate AWS permissions and resources.☆64Updated 2 years ago
- cvet is a Python utility for pulling actionable vulnerabilities from cvetrends.com☆38Updated 2 years ago
- dauthi is a tool that takes advantage of API functionality across a variety of MDM solutions to perform user enumeration and single-facto…☆35Updated 6 months ago
- Take domains on stdin and output them on stdout if they get resolved☆33Updated 2 years ago
- A collection of utilities for building extensions using Burp's Montoya API☆46Updated 5 months ago
- Finding sensitive information in the trimmed parts of cropped images☆28Updated 2 years ago
- multiple password 'asher using Python’s hashlib☆14Updated 3 years ago
- Quick WAF "paranoid" Doctor Evaluation | WAFPARAN01D3 Tool☆25Updated 2 years ago
- ☆26Updated 2 years ago
- Simple PoC for demonstrating Race Conditions on Websockets☆56Updated last year
- FireProx written in Go☆17Updated 7 months ago
- Use the GCP testIamPermissions functionality to bruteforce and discover your permissions☆21Updated 2 months ago
- Interactsh deployment to AWS EC2 Instance with Terraform☆11Updated 2 years ago
- A tool to parse, deduplicate, and query multiple port scans.☆57Updated last year
- Robust and blazing fast open-redirect vulnerability scanner with ability of recursevely crawling all of web-forms, entry points, or links…☆39Updated last year
- A steampipe plugin to query projectdiscovery.io tools.☆26Updated 3 months ago
- Simple bash Script to automate initial recon using (httpx, puredns, regulator, wayback, katana, aquatone)☆35Updated last year
- A collection of my Semgrep rules☆47Updated last year
- ☆29Updated 2 years ago
- Python's handling of NaN is....interesting?broken?...this project illustrates the issue☆13Updated 2 years ago
- Melee: Tool to Detect Infections in MySQL Instances☆21Updated last year
- Script for importing Nmap results into a Neo4j Graph Database☆18Updated 2 years ago