synacktiv / laravel-crypto-killer
A tool designed to exploit bad implementations of decryption mechanisms in Laravel applications.
☆40Updated 5 months ago
Alternatives and similar repositories for laravel-crypto-killer:
Users that are interested in laravel-crypto-killer are comparing it to the libraries listed below
- Make better use of the embedded browser that comes by default with Burp☆43Updated last year
- Progress Telerik Report Server pre-authenticated RCE chain (CVE-2024-4358/CVE-2024-1800)☆75Updated 10 months ago
- This tool is designed to test for file upload and XXE vulnerabilities by poisoning XLSX files.☆75Updated last year
- Drupalwned is a script designed to escalate a Cross-Site Scripting (XSS) vulnerability to Remote Code Execution (RCE) or other's critical…☆40Updated last year
- This tool automates the process of running FFUF (Fuzz Faster U Fool) and post-processing its results to extract valid URLs. It supports b…☆34Updated 5 months ago
- A chrome/Firefox extension to retrieve and load react javascript chunks all at once for a wide range of javascript techs☆63Updated last month
- ☆13Updated last year
- ☆30Updated 2 weeks ago
- Exploit for Symfony CVE-2024-50340 (forked eos)☆28Updated 4 months ago
- Recon scripts for Red Team and Web blackbox auditing☆23Updated last month
- Some tips for Bug Bounty using LibreOffice☆46Updated last month
- Help recon of hostnames from specific ASN or CIDR, thanks to Robtex and BGP.HE☆53Updated 5 months ago
- A powerful AWS Cognito analysis and session hijacking toolkit designed for security researchers and penetration testers. CognitoHunter sp…☆20Updated 2 months ago
- ☆39Updated 2 months ago
- This Chromium extension scans the page for external iFrames, Scripts, and Styles, logs them to the console, and checks if their domains a…☆49Updated 3 months ago
- A better way of querying certificate transparency logs☆84Updated 2 weeks ago
- A Burp extension to help pentesters copy requests / responses for reports.☆38Updated 3 months ago
- Scans remote JavaScript files with Trufflehog + Semgrep to detect leaked secrets☆52Updated 2 months ago
- Authentication Bypass in GoAnywhere MFT☆61Updated last year
- Official TruffleHog Burp Suite Extension. Scan Burp Suite traffic for 800+ different types of secrets (API keys, passwords, SSH keys, etc…☆59Updated last month
- Contexter - A secondary context path traversal / server-side parameter pollution testing tool written in Python 3☆22Updated 8 months ago
- Mine URLs from Browser's Heap Snapshot for fun and profit☆64Updated last year
- ☆62Updated 2 years ago
- Repro for Confusion Attacks: Exploiting Hidden Semantic Ambiguity in Apache HTTP Server!☆20Updated 7 months ago
- Additional resources for leaking and exploiting ObjRefs via HTTP .NET Remoting (CVE-2024-29059)☆88Updated last year
- Web cache poisoning vulnerability scanner.☆65Updated 2 years ago
- NetScan CLI is a command-line tool for retrieving and analyzing IP address information. It provides detailed subnet and organization data…☆59Updated 7 months ago
- A script to automatically dump all URLs present in /server-status to a file locally.☆23Updated 2 months ago
- ☆35Updated 2 years ago
- Blinks is a powerful Burp Suite extension that automates active scanning with Burp Suite Pro and enhances its functionality. With the int…☆114Updated 4 months ago