skiptomyliu / solutions-bwappLinks
In progress rough solutions to bWAPP / bee-box
☆179Updated 5 years ago
Alternatives and similar repositories for solutions-bwapp
Users that are interested in solutions-bwapp are comparing it to the libraries listed below
Sorting:
- SQL Injection Payloads for Burp Suite, OWASP Zed Attack Proxy,...☆235Updated 5 years ago
- A series of python scripts for generating weird character combinations for bypassing web application firewalls (WAF) and XSS blockers☆278Updated 7 years ago
- ZAP/Burp plugin that generate script to reproduce a specific HTTP request (Intended for fuzzing or scripted attacks)☆297Updated 2 years ago
- Collection of commands, tips and tricks and references I found useful during preparation for OSCP exam.☆437Updated 4 years ago
- From XSS to RCE 2.75 - Black Hat Europe Arsenal 2017 + Extras☆424Updated 5 years ago
- Lesser Known Web Attack Lab☆331Updated 5 years ago
- Reverse Shell Cheat Sheet TooL☆298Updated 5 years ago
- WackoPicko is a vulnerable web application used to test web application vulnerability scanners.☆339Updated last year
- Java deserialization exploitation lab.☆235Updated 6 years ago
- A Burp Suite Pro extension which augments your proxy traffic by injecting non-invasive headers designed to reveal backend systems by caus…☆438Updated 7 months ago
- a tiny tool for swf hacking, just browse it:)☆243Updated 12 years ago
- XXE Out of Band Server.☆172Updated 2 years ago
- Hunting Bugs for Fun and Profit☆272Updated 5 years ago
- Another way to bypass WAF Cheat Sheet (draft)☆428Updated 6 years ago
- XPath injection tool☆395Updated 2 years ago
- SQLiPy is a Python plugin for Burp Suite that integrates SQLMap using the SQLMap API.☆259Updated 6 months ago
- Content hijacking proof-of-concept using Flash, PDF and Silverlight☆384Updated 6 years ago
- Add headers to all Burp requests to bypass some WAF products☆328Updated 7 years ago
- SHELLING - a comprehensive OS command injection payload generator☆445Updated 5 years ago
- SSLScrape | A scanning tool for scaping hostnames from SSL certificates.☆334Updated 4 years ago
- Search Exploitable Software on Linux☆234Updated 2 years ago
- A collection of curated Java Deserialization Exploits☆590Updated 4 years ago
- kadimus is a tool to check and exploit lfi vulnerability.☆553Updated 5 years ago
- Contents for Node.Js Security Course☆343Updated 5 years ago
- A mini webserver with FTP support for XXE payloads☆334Updated last year
- Web Fuzzing Discovery and Attack Pattern Database☆113Updated 7 years ago
- Script to test for Cisco ASA path traversal vulnerability (CVE-2018-0296) and extract system information.☆205Updated last year
- HTTP file upload scanner for Burp Proxy☆490Updated last year
- Inspired by https://github.com/djadmin/awesome-bug-bounty, a list of bug bounty write-up that is categorized by the bug nature☆56Updated 8 years ago
- Lab for exploring SSRF vulnerabilities☆248Updated 4 years ago