ret2jazzy / Ethereum-JSONRPC-DNS-RebindingLinks
The PoC files for ethereum client's JSON-RPC DNS Rebinding
☆35Updated 7 years ago
Alternatives and similar repositories for Ethereum-JSONRPC-DNS-Rebinding
Users that are interested in Ethereum-JSONRPC-DNS-Rebinding are comparing it to the libraries listed below
Sorting:
- Finding Ethereum nodes which are vulnerable to RPC-attacks☆31Updated 9 years ago
- Application to take over mining destination of remote cgminer instances via RPC interface.☆24Updated 9 years ago
- Hunt Open MongoDB instances☆79Updated 6 years ago
- Dockerized version of Sn1per (https://github.com/1N3/Sn1per)☆60Updated 7 years ago
- An adaptive, intelligent XSS fuzzer that learns how the response is reflected and carefully crafts an XSS payload to match☆42Updated 13 years ago
- A front-end JavaScript toolkit for creating DNS rebinding attacks.☆45Updated 7 years ago
- XXE vulnerability demo☆22Updated 11 years ago
- Heartbleed (CVE-2014-0160) client exploit☆325Updated 9 years ago
- WhiteBox CMS analysis☆68Updated 2 years ago
- ~ BannerGrab☆25Updated 9 years ago
- GitBackdorizer (bad name, I know!) Is a proof of concept from Ulisses Castro's talk - 50 ton of backdoors (https://www.slideshare.net/uli…☆50Updated 7 years ago
- Disrupt WAF by abusing SSL/TLS Ciphers☆48Updated 6 years ago
- A websocket proxy☆55Updated 8 years ago
- Burp extension to help developers replicate findings from pen tests☆70Updated last year
- ☆35Updated last week
- A Proof of Concept to show how blockchain can solve C2C persistence. PoC originally presented at EuskalHack Security Congress 2017, updat…☆23Updated 7 years ago
- ☆23Updated 7 years ago
- A tool to help you manage your leaks☆34Updated 8 years ago
- Files from Zeronights presentation.☆28Updated 13 years ago
- Transparently log all data passed into known JavaScript sinks - Sink Logger extension for Burp.☆49Updated 3 years ago
- A collection of darkc0de old scripts (for education purposes only)☆86Updated 9 years ago
- Automatically parses and attacks BloodHound-generated graphs☆42Updated 7 years ago
- Generic Command Exploitation Engine for exploiting web application command-injection bugs,.☆31Updated 12 years ago
- Plaintext Password harvesting from Azure Windows VMs☆68Updated 7 years ago
- ImaegMagick Code Execution (CVE-2016-3714)☆69Updated 9 years ago
- Steals cleartext passwords from webservices, by reading the memory of browsers☆28Updated 8 years ago
- Abusing Self-XSS and Clickjacking to trigger XSS☆136Updated 8 years ago
- Cronbased Dirty Cow Exploit☆30Updated 8 years ago
- OpenSSH <=6.6 SFTP misconfiguration universal exploit☆27Updated 7 years ago
- DNS Sub-domain brute forcer, in Python + gevent☆51Updated 9 years ago