qtc-de / remote-method-guesser
Java RMI Vulnerability Scanner
☆854Updated 8 months ago
Alternatives and similar repositories for remote-method-guesser:
Users that are interested in remote-method-guesser are comparing it to the libraries listed below
- JMX enumeration and attacking tool.☆422Updated 2 months ago
- HopLa Burp Suite Extender plugin - Adds autocompletion support and useful payloads in Burp Suite☆725Updated 3 years ago
- Probe endpoints consuming Java serialized objects to identify classes, libraries, and library versions on remote Java classpaths.☆595Updated 4 years ago
- Log4j jndi injects the Payload generator☆486Updated 3 years ago
- Nuclei plugin for BurpSuite☆1,226Updated 6 months ago
- A tool to embed XXE and XSS payloads in docx, odt, pptx, xlsx files (oxml_xxe on steroids)☆589Updated last year
- Exploiting CVE-2021-42278 and CVE-2021-42287 to impersonate DA from standard domain user☆853Updated 2 years ago
- project-blacklist3r☆527Updated 2 weeks ago
- A tiny project for generating SnakeYAML deserialization payloads☆585Updated 5 years ago
- Proxylogon & Proxyshell & Proxyoracle & Proxytoken & All exchange server history vulns summarization :)☆524Updated last year
- SSRF plugin for burp Automates SSRF Detection in all of the Request☆572Updated 4 years ago
- Sudo Baron Samedit Exploit☆743Updated 3 years ago
- Automatic authorization enforcement detection extension for burp suite written in Jython developed by Barak Tawily in order to ease appli…☆236Updated 3 months ago
- List DTDs and generate XXE payloads using those local DTDs.☆620Updated last year
- IOXIDResolver.py from AirBus Security☆239Updated last year
- An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability☆859Updated 3 years ago
- ☆402Updated 3 years ago
- RCE 0-day for GhostScript 9.50 - Payload generator☆545Updated 3 years ago
- Exploit for EfsPotato(MS-EFSR EfsRpcOpenFileRaw with SeImpersonatePrivilege local privalege escalation vulnerability).☆759Updated last year
- A Burp extension helps identifying injection flaws (LFI, RCE, SQLi), authentication/authorization issues, and HTTP 403 access violations,…☆363Updated 3 weeks ago
- Standalone utility for service discovery on open ports!☆602Updated 3 weeks ago
- Standalone binaries for Linux/Windows of Impacket's examples☆727Updated last year
- jolokia-exploitation-toolkit☆287Updated 3 months ago
- CVE-2021-42287/CVE-2021-42278 Scanner & Exploiter.☆1,362Updated 3 years ago
- Ghostcat read file/code execute,CNVD-2020-10487(CVE-2020-1938)☆383Updated 5 years ago
- Grafana Unauthorized arbitrary file reading vulnerability☆356Updated 2 years ago
- Burp Extension for a passive scanning JS files for endpoint links.☆769Updated last year
- A python script to scan for Apache Tomcat server vulnerabilities.☆820Updated last month
- mssqlproxy is a toolkit aimed to perform lateral movement in restricted environments through a compromised Microsoft SQL Server via socke…☆737Updated 4 years ago
- This tool is for letting you know how strong your disable_functions is and how you can bypass that.☆125Updated 5 years ago