teambi0s / dfunc-bypasser
This tool is for letting you know how strong your disable_functions is and how you can bypass that.
☆127Updated 5 years ago
Alternatives and similar repositories for dfunc-bypasser:
Users that are interested in dfunc-bypasser are comparing it to the libraries listed below
- That repository contains my updates to the well know java deserialization exploitation tool ysoserial.☆177Updated 2 years ago
- A simple NodeJS WebSocket WebApp vulnerable to blind SQL injection☆70Updated 4 years ago
- jolokia-exploitation-toolkit☆287Updated 3 months ago
- Multi-threaded, IPv6 aware, wordlists/single-user username enumeration via CVE-2018-15473☆108Updated 11 months ago
- LFI to RCE via phpinfo() assistance or via controlled log file☆64Updated 2 years ago
- Phar + JPG Polyglot generator and playground (CTF CODE)☆85Updated 6 years ago
- This repository contains various XXE labs set up for different languages and their different parsers. This may alternatively serve as a p…☆105Updated last year
- RCE for old gitlab version <= 11.4.7 & 12.4.0-12.8.1 and LFI for old gitlab versions 10.4 - 12.8.1☆157Updated 4 years ago
- Exploit for CVE-2021-3129☆66Updated 4 years ago
- Python tool for enumerating directories and files on web servers that contain a publicly readable .ds_store file.☆58Updated 3 years ago
- Generates a `php://filter` chain that adds a prefix and a suffix to the contents of a file.☆208Updated 6 months ago
- JMX enumeration and attacking tool.☆431Updated 3 weeks ago
- Aspx reverse shell☆106Updated 5 years ago
- ☆118Updated 2 years ago
- Burpsuite plugin for Interact.sh☆218Updated 9 months ago
- Enumerate / Dump Docker Registry☆174Updated last year
- A (small) web exploit framework☆86Updated 2 weeks ago
- Peas create serialized payload for deserialization RCE attack on python driven applications where pickle ,pyYAML, ruamel.yaml or jsonpick…☆112Updated last year
- Root shell PoC for CVE-2021-3156☆65Updated 4 years ago
- Ghostscript command injection vulnerability PoC (CVE-2023-36664)☆118Updated last year
- CVE-2023-33733 reportlab RCE☆115Updated last year
- Exploits targeting Symfony☆200Updated 6 months ago
- lightyear is a tool to dump files in tedious (blind) conditions using PHP filters☆87Updated 5 months ago
- IOXIDResolver.py from AirBus Security☆241Updated last year
- ImageMagick LFI PoC [CVE-2022-44268]☆52Updated last year
- This exention enables autocompletion within BurpSuite Repeater/Intruder tabs.☆164Updated 4 years ago
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆119Updated last year
- POC for CVE-2020-13151☆30Updated 4 years ago
- RCE exploit for dompdf☆176Updated 3 years ago
- CVE-2022-44268 ImageMagick Arbitrary File Read - Payload Generator☆271Updated 2 years ago