summitt / burp-ysoserial
YSOSERIAL Integration with burp suite
☆163Updated 2 years ago
Alternatives and similar repositories for burp-ysoserial:
Users that are interested in burp-ysoserial are comparing it to the libraries listed below
- Java serialization brute force attack tool.☆123Updated 7 years ago
- Central Repo for Burp extensions☆150Updated 3 years ago
- CVE-2018-2893-PoC☆103Updated 6 years ago
- An Out-of-Band XXE server for retrieving file contents over FTP.☆177Updated 4 years ago
- poison and relay NTLM credentials☆174Updated 6 years ago
- ZAP/Burp plugin that generate script to reproduce a specific HTTP request (Intended for fuzzing or scripted attacks)☆290Updated last year
- CVE-2018-7600 - Drupal 7.x RCE☆71Updated 6 years ago
- XXE Out of Band Server.☆170Updated last year
- Takes a URL and checks the system for the tilde enum vuln and then find the files.☆170Updated 6 years ago
- Jsdir is a Burp Suite extension that extracts hidden paths from js files and beautifies it for further reading.☆118Updated 4 years ago
- Java deserialization exploitation lab.☆236Updated 6 years ago
- Apache Tomcat Remote Code Execution on Windows☆185Updated 5 years ago
- Atlassian JIRA Template injection vulnerability RCE☆93Updated 5 years ago
- WebLogic Exploit☆142Updated 6 years ago
- A vulnerable application exposing Spring Boot Actuators☆121Updated 6 years ago
- RCE on Apache Solr using deserialization of untrusted data via jmx.serviceUrl☆209Updated 5 years ago
- A Burp extension for generic extraction and reuse of data within HTTP requests and responses.☆91Updated 3 years ago
- siberas JMX exploitation toolkit☆129Updated last year
- Utils☆267Updated 9 years ago
- (Deprecated) HQLmap, Automatic tool to exploit HQL injections☆227Updated 5 years ago
- A Burp Extension to test applications for vulnerability to the Web Cache Deception attack☆136Updated 4 years ago
- WSDL Parser extension for Burp☆234Updated 6 years ago
- An interactive OOB XXE data exfiltration tool☆91Updated 7 years ago
- Oracle WebLogic WLS-WSAT Remote Code Execution Exploit (CVE-2017-10271)☆126Updated 2 years ago
- Inspired by https://github.com/djadmin/awesome-bug-bounty, a list of bug bounty write-up that is categorized by the bug nature☆52Updated 8 years ago
- Security checks pack for Burp Suite☆138Updated 7 years ago
- CVE-2018-2894 WebLogic Unrestricted File Upload Lead To RCE Check Script☆137Updated 6 years ago
- XSS Fuzzer is a tool which generates XSS payloads based on user-defined vectors and fuzzing lists.☆140Updated 6 years ago
- Script to test if a server is vulnerable to the JetLeak vulnerability☆144Updated 8 years ago
- A mini webserver with FTP support for XXE payloads☆328Updated last year