redtimmy / OAMBuster
Multithreaded Padding Oracle Attack on Oracle OAM (CVE-2018-2879)
☆24Updated 5 years ago
Alternatives and similar repositories for OAMBuster:
Users that are interested in OAMBuster are comparing it to the libraries listed below
- All about CVE-2018-14667; From what it is to how to successfully exploit it.☆50Updated 6 years ago
- A BurpSuite extension for beautifying .NET message parameters and hiding some of the extra clutter that comes with .NET web apps (i.e. __…☆12Updated 9 years ago
- CVE-2020-12828 PoC and Analysis.☆28Updated 4 years ago
- Parse X509 certificates to get the (sub)domains in it.☆28Updated 6 years ago
- ☆29Updated 6 years ago
- New version of RottenPotato as a C++ DLL and standalone C++ binary - no need for meterpreter or other tools.☆36Updated 7 years ago
- Burp Suite Professional extension in Java for Tabnabbing attack☆13Updated 6 years ago
- Python script which will type a file into an RDP session. For when drag and drop and disk mounting is not possible☆31Updated 9 months ago
- OWASP Skanda - SSRF Exploitation Framework☆37Updated 11 years ago
- A Burp Suite content discovery plugin that add the smart into the Buster!☆31Updated 7 years ago
- Scan for open S3 buckets and dump☆36Updated 6 years ago
- Generate pentest reports based on github issues.☆17Updated 2 years ago
- CVE-2017-10271 WEBLOGIC RCE (TESTED)☆38Updated 7 years ago
- BurpSuite's payload-generation extension aiming at applying fuzzed test-cases depending on the type of payload (integer, string, path; JS…☆39Updated 3 years ago
- ☆38Updated 4 years ago
- A simple scanner to find and brute force tomcat manager logins☆28Updated 5 years ago
- NMAP NSE script that scans for http(s) server, takes a screenshot of them, and organizes the results into an HTML report.☆27Updated 10 years ago
- Burp extension to decode NTLM SSP headers and extract domain/host information☆31Updated 3 years ago
- Burp plugin to do random fuzzing of HTTP requests☆33Updated 8 years ago
- Updated 6 years ago
- This is a Burpsuite plugin built to enable you to import your directory bruteforcing results into burp for easy viewing later. This is an…☆36Updated last year
- Remote process dumping automation. Use it to dump Windows credentials remotely and extract clear text with Mimikatz offline☆35Updated 5 years ago
- Proof of concept written in Python to show that in some situations a SSRF vulnerability can be used to steal NTLMv1/v2 hashes.☆57Updated 7 years ago
- ☆21Updated 5 years ago
- A simple grep user interface for searching code which can be used for SAST.☆8Updated 5 years ago
- A Flexible Web Shell Client, Built on Electron☆13Updated 2 years ago
- Python api for usage with cobalt strike's External C2 specification☆61Updated 6 years ago
- XSS payloads for edge cases☆34Updated 6 years ago
- Finally, reverse/bind shells written in python, encrypted with ssl!☆39Updated 5 years ago
- CVE-2019-12949☆26Updated 5 years ago