qtc-de / beanshooter
JMX enumeration and attacking tool.
☆429Updated 3 weeks ago
Alternatives and similar repositories for beanshooter:
Users that are interested in beanshooter are comparing it to the libraries listed below
- Java RMI Vulnerability Scanner☆856Updated 9 months ago
- jolokia-exploitation-toolkit☆287Updated 3 months ago
- This tool is for letting you know how strong your disable_functions is and how you can bypass that.☆127Updated 5 years ago
- Probe endpoints consuming Java serialized objects to identify classes, libraries, and library versions on remote Java classpaths.☆595Updated 4 years ago
- ☆403Updated 3 years ago
- That repository contains my updates to the well know java deserialization exploitation tool ysoserial.☆177Updated 2 years ago
- ☆406Updated 2 years ago
- MOGWAI LABS JMX exploitation toolkit☆201Updated 2 years ago
- RMIScout uses wordlist and bruteforce strategies to enumerate Java RMI functions and exploit RMI parameter unmarshalling vulnerabilities☆430Updated 2 years ago
- IOXIDResolver.py from AirBus Security☆241Updated last year
- Burp Extensions Api☆161Updated 2 weeks ago
- Subdomains analysis and generation tool. Reveal the hidden!☆237Updated last month
- HopLa Burp Suite Extender plugin - Adds autocompletion support and useful payloads in Burp Suite☆743Updated 3 years ago
- ☆281Updated 3 years ago
- RCE exploit for a .NET JSON deserialization vulnerability in Telerik UI for ASP.NET AJAX.☆353Updated 3 years ago
- ☆196Updated last week
- POC for VMWARE CVE-2022-22954☆281Updated 3 years ago
- Burp Extension for testing authorization issues. Automated request repeating and parameter value extraction on the fly.☆197Updated 10 months ago
- RCE for old gitlab version <= 11.4.7 & 12.4.0-12.8.1 and LFI for old gitlab versions 10.4 - 12.8.1☆157Updated 4 years ago
- RCE exploit for CVE-2023-3519☆223Updated last year
- project-blacklist3r☆536Updated last month
- Grafana Unauthorized arbitrary file reading vulnerability☆356Updated 2 years ago
- Proxylogon & Proxyshell & Proxyoracle & Proxytoken & All exchange server history vulns summarization :)☆525Updated last year
- A cli for cracking, testing vulnerabilities on Json Web Token(JWT)☆133Updated last month
- A Burp extension helps identifying injection flaws (LFI, RCE, SQLi), authentication/authorization issues, and HTTP 403 access violations,…☆369Updated last week
- CVE-2022-44268 ImageMagick Arbitrary File Read - Payload Generator☆271Updated 2 years ago
- Local privilege escalation from SeImpersonatePrivilege using EfsRpc.☆315Updated 2 years ago
- ☆381Updated 3 years ago
- Proof of Concept for CVE-2021-34473, CVE-2021-34523, and CVE-2021-31207☆111Updated last year
- From an account member of the group Backup Operators to Domain Admin without RDP or WinRM on the Domain Controller☆420Updated 3 months ago