raesene / k8s_ssrf_portscanner
☆31Updated 2 years ago
Alternatives and similar repositories for k8s_ssrf_portscanner:
Users that are interested in k8s_ssrf_portscanner are comparing it to the libraries listed below
- Konstellation is a configuration-driven CLI tool to enumerate cloud resources and store the data into Neo4j.☆21Updated last year
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆30Updated 2 months ago
- Create tar/zip archives that try to exploit zipslip vulnerability.☆47Updated 7 months ago
- Proof-of-concept code for research into GitHub Actions Cache poisoning.☆22Updated last month
- WAF bypass PoC☆47Updated last year
- Additional active scan checks for BURP☆27Updated 7 months ago
- Blogpost series showcasing interesting cloud - web app security bugs☆47Updated last year
- Determine privileges from cloud credentials via brute-force testing.☆67Updated 8 months ago
- Simple PoC for demonstrating Race Conditions on Websockets☆55Updated last year
- PoC repository for CVE-2023-29007☆33Updated 2 years ago
- Unsafe Unpacking Vulnerability: Lab Code, Semgrep Rules and Secure Implementation Guide☆41Updated 4 months ago
- Simple Command Line Tool to Enumerate Slack Workspace Names from Slack Webhook URLs.☆41Updated last year
- Updated version of the ProtoBurp Extension, with enhanced features and capabilities to encode and fuzz custom protobuf messages☆36Updated last year
- yataf extracts secrets and paths from files or urls - its best used against javascript files☆52Updated 7 months ago
- Sniff and attack networks that use IP-in-IP or VXLAN encapsulation protocols.☆21Updated 8 months ago
- A collection of utilities for building extensions using Burp's Montoya API☆50Updated 10 months ago
- POC for CVE-2022-23648☆36Updated 3 years ago
- Proof of Concepts for unsafe deserialization in Ruby☆17Updated 6 months ago
- AssetViz simplifies the visualization of subdomains from input files, presenting them as a coherent mind map. Ideal for penetration test…☆32Updated last year
- A steampipe plugin to query projectdiscovery.io tools.☆26Updated 9 months ago
- Java archive implant toolkit.☆60Updated 2 weeks ago
- ☆47Updated 10 months ago
- The authentication bypass vulnerability in GitHub Enterprise Server (GHES) allows an unauthorized attacker to access an instance of GHES …☆50Updated 11 months ago
- Tool to spray AWS Console IAM Logins☆29Updated 2 years ago
- HTTP request smuggling attack helper/CLI tools to manipulate HTTP packets☆36Updated 2 years ago
- Repro for Confusion Attacks: Exploiting Hidden Semantic Ambiguity in Apache HTTP Server!☆20Updated 8 months ago
- Backend for Nuclear Pond☆21Updated last year
- ☆71Updated 3 years ago
- A web server designed to shut off on command to exploit DNS rebinding in Chromium-based browsers☆12Updated last year
- An extension to use Semgrep inside Burp Suite.☆88Updated last year