sobinge / PayloadsAllThesobingeLinks
Web应用程序安全性和Pentest / CTF的有用负载和绕过列表
☆12Updated 6 years ago
Alternatives and similar repositories for PayloadsAllThesobinge
Users that are interested in PayloadsAllThesobinge are comparing it to the libraries listed below
Sorting:
- web fuzzing && bug hunter☆61Updated 4 years ago
- burpsuite 插件对GP所有参数(过滤特殊参数)一键自动添加xss sql payload 进行fuzz☆63Updated 7 years ago
- Template Injection in Email Templates leads to code execution on Jira Service Management Server☆48Updated 4 years ago
- burpsuite extension for check and extract sensitive request parameter☆115Updated 5 years ago
- ☆78Updated last year
- Exploitation Tool for CVE-2017-3066 targeting Adobe Coldfusion 11/12☆96Updated 3 years ago
- SpringBoot_Actuator_RCE☆95Updated 5 years ago
- Inspur vul repo☆34Updated 4 years ago
- My collection of various of JSP Webshell.☆37Updated 3 years ago
- https://github.com/GrrrDog/Java-Deserialization-Cheat-Sheet☆54Updated 4 years ago
- Burp Extension in Python hilighting DOM Sinks and Hosts using DOM XSS Wiki regex☆24Updated 12 years ago
- Burp extension intended to compact Burp extension tabs by hijacking them to own tab.☆131Updated 5 years ago
- IMAP Bruteforce Script☆30Updated 6 years ago
- IDOR bypass fuzz 权限绕过burp 插件 fuzz (shiro 等)☆27Updated 4 years ago
- Tool to searching sentry config on page or in javascript files and check blind SSRF☆71Updated last year
- A BurpSuite extension written by Python,used to find API interface in JS file.☆114Updated 2 years ago
- PoC for pocsuite3 and nuclei☆56Updated 3 years ago
- Rusty Joomla RCE Exploit☆69Updated 3 years ago
- A simple python script to generate XML payloads works for XMLDecoder based on ProcessBuilder and Runtime exec☆150Updated 5 years ago
- POC of CVE-2021-2394☆40Updated 4 years ago
- FuckAnywhere - 这是一个BurpSuite Jython(Python)插件,用于在HTTP请求中随处插入你想要进行测试的代码。☆51Updated 4 years ago
- 简单记录下自己在挖掘SRC☆32Updated 5 years ago
- GitLab 依赖项扫描的咨询数据库,每天17:00自动更新☆46Updated this week
- F5 BIG-IP RCE CVE-2020-5902 automatic check tool☆62Updated 5 years ago
- Apache Solr RCE via Velocity template☆113Updated 6 years ago
- DVPNET 公开漏洞知识库☆94Updated 4 years ago
- RedTeam参考,修改自Ridter的https://github.com/Ridter/Intranet_Penetration_Tips☆89Updated 4 years ago
- ☆26Updated last year
- 这是一个用于IP和域名碰撞匹配访问的小工具,旨意用来匹配出渗透过程中需要绑定hosts才能访问的弱主机或内部系统。https://github.com/fofapro/Hosts_scan implement in Go☆116Updated 3 years ago
- Log4j 漏洞本地检测脚本。 Scan all java processes on your host to check whether it's affected by log4j2 remote code execution vulnerability (CVE-20…☆84Updated 4 years ago