qtc-de / remote-method-guesser
Java RMI Vulnerability Scanner
☆856Updated 9 months ago
Alternatives and similar repositories for remote-method-guesser:
Users that are interested in remote-method-guesser are comparing it to the libraries listed below
- JMX enumeration and attacking tool.☆429Updated 3 weeks ago
- HopLa Burp Suite Extender plugin - Adds autocompletion support and useful payloads in Burp Suite☆743Updated 3 years ago
- Probe endpoints consuming Java serialized objects to identify classes, libraries, and library versions on remote Java classpaths.☆595Updated 4 years ago
- Exploiting CVE-2021-42278 and CVE-2021-42287 to impersonate DA from standard domain user☆858Updated 2 years ago
- Nuclei plugin for BurpSuite☆1,231Updated 7 months ago
- project-blacklist3r☆536Updated last month
- A tool to embed XXE and XSS payloads in docx, odt, pptx, xlsx files (oxml_xxe on steroids)☆599Updated last year
- SSRF plugin for burp Automates SSRF Detection in all of the Request☆576Updated 4 years ago
- ☆403Updated 3 years ago
- A tiny project for generating SnakeYAML deserialization payloads☆591Updated 6 years ago
- Proxylogon & Proxyshell & Proxyoracle & Proxytoken & All exchange server history vulns summarization :)☆525Updated last year
- List DTDs and generate XXE payloads using those local DTDs.☆624Updated last year
- Log4Shell scanner for Burp Suite☆482Updated last year
- IOXIDResolver.py from AirBus Security☆241Updated last year
- Sudo Baron Samedit Exploit☆744Updated 3 years ago
- Automatic authorization enforcement detection extension for burp suite written in Jython developed by Barak Tawily in order to ease appli…☆243Updated 4 months ago
- BChecks collection for Burp Suite Professional and Burp Suite Enterprise Edition☆683Updated last week
- Ghostcat read file/code execute,CNVD-2020-10487(CVE-2020-1938)☆385Updated 5 years ago
- An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability☆861Updated 3 years ago
- Standalone utility for service discovery on open ports!☆610Updated last month
- A Burp extension helps identifying injection flaws (LFI, RCE, SQLi), authentication/authorization issues, and HTTP 403 access violations,…☆369Updated last week
- RCE exploit for a .NET JSON deserialization vulnerability in Telerik UI for ASP.NET AJAX.☆353Updated 3 years ago
- Log4j jndi injects the Payload generator☆486Updated 3 years ago
- RMIScout uses wordlist and bruteforce strategies to enumerate Java RMI functions and exploit RMI parameter unmarshalling vulnerabilities☆430Updated 2 years ago
- jolokia-exploitation-toolkit☆287Updated 3 months ago
- Burp Extension for a passive scanning JS files for endpoint links.☆773Updated last year
- mssqlproxy is a toolkit aimed to perform lateral movement in restricted environments through a compromised Microsoft SQL Server via socke…☆740Updated 4 years ago
- Exploit for EfsPotato(MS-EFSR EfsRpcOpenFileRaw with SeImpersonatePrivilege local privalege escalation vulnerability).☆768Updated last year
- A python script to scan for Apache Tomcat server vulnerabilities.☆824Updated 2 months ago
- RCE 0-day for GhostScript 9.50 - Payload generator☆546Updated 3 years ago