qtc-de / beanshooter
JMX enumeration and attacking tool.
☆392Updated last month
Related projects ⓘ
Alternatives and complementary repositories for beanshooter
- jolokia-exploitation-toolkit☆280Updated 7 months ago
- Java RMI Vulnerability Scanner☆828Updated 4 months ago
- Burp Extension for testing authorization issues. Automated request repeating and parameter value extraction on the fly.☆185Updated 5 months ago
- That repository contains my updates to the well know java deserialization exploitation tool ysoserial.☆176Updated 2 years ago
- POC for VMWARE CVE-2022-22954☆280Updated 2 years ago
- Subdomains analysis and generation tool. Reveal the hidden!☆232Updated this week
- Probe endpoints consuming Java serialized objects to identify classes, libraries, and library versions on remote Java classpaths.☆585Updated 3 years ago
- This tool is for letting you know how strong your disable_functions is and how you can bypass that.☆113Updated 5 years ago
- MOGWAI LABS JMX exploitation toolkit☆197Updated last year
- ☆278Updated 3 years ago
- ☆402Updated 2 years ago
- Burp Suite extension for bypassing client-side encryption for pentesting and bug bounty☆186Updated 4 months ago
- Burpsuite plugin for Interact.sh☆198Updated 4 months ago
- ☆170Updated 3 weeks ago
- IOXIDResolver.py from AirBus Security☆220Updated last year
- ☆398Updated 2 years ago
- Burp Extensions Api☆139Updated this week
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆117Updated last year
- RCE for old gitlab version <= 11.4.7 & 12.4.0-12.8.1 and LFI for old gitlab versions 10.4 - 12.8.1☆157Updated 3 years ago
- HopLa Burp Suite Extender plugin - Adds autocompletion support and useful payloads in Burp Suite☆712Updated 3 years ago
- Text4Shell scanner for Burp Suite☆191Updated 2 years ago
- A Burp extension helps identifying injection flaws (LFI, RCE, SQLi), authentication/authorization issues, and HTTP 403 access violations,…☆354Updated last month
- RCE exploit for a .NET JSON deserialization vulnerability in Telerik UI for ASP.NET AJAX.☆348Updated 2 years ago
- RCE exploit for CVE-2023-3519☆221Updated last year
- From an account member of the group Backup Operators to Domain Admin without RDP or WinRM on the Domain Controller☆399Updated 2 years ago
- A tool to embed XXE and XSS payloads in docx, odt, pptx, xlsx files (oxml_xxe on steroids)☆527Updated 9 months ago
- ☆378Updated 3 years ago
- A cli for cracking, testing vulnerabilities on Json Web Token(JWT)☆121Updated last week
- Generates a `php://filter` chain that adds a prefix and a suffix to the contents of a file.☆177Updated last month
- Proof of Concept Exploit for vCenter CVE-2021-21972☆252Updated 3 years ago