qtc-de / beanshooterLinks
JMX enumeration and attacking tool.
☆440Updated 2 months ago
Alternatives and similar repositories for beanshooter
Users that are interested in beanshooter are comparing it to the libraries listed below
Sorting:
- Java RMI Vulnerability Scanner☆869Updated 10 months ago
- jolokia-exploitation-toolkit☆290Updated 5 months ago
- IOXIDResolver.py from AirBus Security☆250Updated last year
- That repository contains my updates to the well know java deserialization exploitation tool ysoserial.☆180Updated 3 years ago
- This tool is for letting you know how strong your disable_functions is and how you can bypass that.☆129Updated 5 years ago
- Probe endpoints consuming Java serialized objects to identify classes, libraries, and library versions on remote Java classpaths.☆599Updated 4 years ago
- ☆408Updated 2 years ago
- ☆405Updated 3 years ago
- MOGWAI LABS JMX exploitation toolkit☆202Updated 2 years ago
- HopLa Burp Suite Extender plugin - Adds autocompletion support and useful payloads in Burp Suite☆748Updated 4 years ago
- RMIScout uses wordlist and bruteforce strategies to enumerate Java RMI functions and exploit RMI parameter unmarshalling vulnerabilities☆433Updated 2 years ago
- A super small jsp webshell with file upload capabilities.☆299Updated 3 years ago
- ☆382Updated 3 years ago
- Exploiting CVE-2021-42278 and CVE-2021-42287 to impersonate DA from standard domain user☆881Updated 2 years ago
- project-blacklist3r☆551Updated 2 months ago
- Burp Extensions Api☆168Updated 2 weeks ago
- RCE exploit for CVE-2023-3519☆224Updated last year
- From an account member of the group Backup Operators to Domain Admin without RDP or WinRM on the Domain Controller☆422Updated 4 months ago
- Local privilege escalation from SeImpersonatePrivilege using EfsRpc.☆322Updated 2 years ago
- ☆281Updated 3 years ago
- RCE exploit for a .NET JSON deserialization vulnerability in Telerik UI for ASP.NET AJAX.☆352Updated 3 years ago
- Python3 script to quickly get various information from a domain controller through his LDAP service.☆225Updated 5 months ago
- POC for VMWARE CVE-2022-22954☆281Updated 3 years ago
- Subdomains analysis and generation tool. Reveal the hidden!☆240Updated 2 months ago
- Exfiltrate blind Remote Code Execution and SQL injection output over DNS via Burp Collaborator.☆267Updated 4 months ago
- Aspx reverse shell☆108Updated 5 years ago
- Proxylogon & Proxyshell & Proxyoracle & Proxytoken & All exchange server history vulns summarization :)☆531Updated last year
- Grafana Unauthorized arbitrary file reading vulnerability☆359Updated 2 years ago
- Ghostcat read file/code execute,CNVD-2020-10487(CVE-2020-1938)☆391Updated 5 years ago
- Source Code Management Attack Toolkit☆219Updated 2 years ago