silentsignal / burp-log4shell
Log4Shell scanner for Burp Suite
☆483Updated last year
Alternatives and similar repositories for burp-log4shell:
Users that are interested in burp-log4shell are comparing it to the libraries listed below
- Log4j jndi injects the Payload generator☆487Updated 3 years ago
- HopLa Burp Suite Extender plugin - Adds autocompletion support and useful payloads in Burp Suite☆722Updated 3 years ago
- Nuclei plugin for BurpSuite☆1,221Updated 5 months ago
- SSRF plugin for burp Automates SSRF Detection in all of the Request☆569Updated 4 years ago
- RCE 0-day for GhostScript 9.50 - Payload generator☆542Updated 3 years ago
- Java RMI Vulnerability Scanner☆851Updated 8 months ago
- 🐱💻 ✂️ 🤬 CVE-2021-44228 - LOG4J Java exploit - WAF bypass tricks☆934Updated 3 years ago
- A tool to embed XXE and XSS payloads in docx, odt, pptx, xlsx files (oxml_xxe on steroids)☆583Updated last year
- Automatic authorization enforcement detection extension for burp suite written in Jython developed by Barak Tawily in order to ease appli…☆235Updated 3 months ago
- ☆516Updated last year
- ☆557Updated 3 years ago
- A Burp extension helps identifying injection flaws (LFI, RCE, SQLi), authentication/authorization issues, and HTTP 403 access violations,…☆360Updated 4 months ago
- An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability☆851Updated 3 years ago
- Tool to help exploit XXE vulnerabilities☆553Updated 2 years ago
- Exploiting CVE-2021-42278 and CVE-2021-42287 to impersonate DA from standard domain user☆1,003Updated 2 years ago
- Probe endpoints consuming Java serialized objects to identify classes, libraries, and library versions on remote Java classpaths.☆596Updated 3 years ago
- Burpsuite extension for log4j2rce☆28Updated 3 years ago
- ActiveScan++ Burp Suite Plugin☆214Updated last month
- A fully automated, reliable, super-fast, mass scanning and validation toolkit for the Log4J RCE CVE-2021-44228 vulnerability.☆398Updated 2 months ago
- List DTDs and generate XXE payloads using those local DTDs.☆619Updated last year
- CVE-2021-42287/CVE-2021-42278 Scanner & Exploiter.☆1,360Updated 3 years ago
- A fully automated, reliable, and accurate scanner for finding Spring4Shell and Spring Cloud RCE vulnerabilities☆658Updated 2 years ago
- A python script to scan for Apache Tomcat server vulnerabilities.☆816Updated 2 weeks ago
- Grafana Unauthorized arbitrary file reading vulnerability☆356Updated 2 years ago
- Because just a dark theme wasn't enough!☆558Updated 2 months ago
- Burp Extension for a passive scanning JS files for endpoint links.☆763Updated 11 months ago
- Spring4Shell Proof Of Concept/And vulnerable application CVE-2022-22965☆362Updated 2 years ago
- 🔑 Authz0 is an automated authorization test tool. Unauthorized access can be identified based on URLs and Roles & Credentials.☆415Updated 4 months ago
- A scanner/exploitation tool written in GO, which leverages client-side Prototype Pollution to XSS by exploiting known gadgets.☆501Updated 2 years ago
- ☆281Updated 3 years ago