tennc / fuzzdb
Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.
☆1,377Updated 3 years ago
Alternatives and similar repositories for fuzzdb:
Users that are interested in fuzzdb are comparing it to the libraries listed below
- Tool for automatic exploitation of XXE vulnerability using direct and different out of band methods.☆1,610Updated 4 months ago
- HackBar plugin for Burpsuite☆1,563Updated 3 years ago
- This tool generates gopher link for exploiting SSRF and gaining RCE in various servers☆3,010Updated last year
- The successor to reDuh, pwn a bastion webserver and create SOCKS proxies through the DMZ. Pivot and pwn.☆3,062Updated 3 weeks ago
- A .DS_Store file disclosure exploit. It parses .DS_Store file and downloads files recursively.☆1,617Updated last year
- Code-Audit-Challenges☆980Updated 6 years ago
- weblogic 漏洞扫描工具。目前包含对以下漏洞的检测能力:CVE-2014-4210、CVE-2016-0638、CVE-2016-3510、CVE-2017-3248、CVE-2017-3506、CVE-2017-10271、CVE-2018-2628、CVE-201…☆2,032Updated last year
- BurpSuite using the document and some extensions☆974Updated 2 years ago
- Rip web accessible (distributed) version control systems: SVN/GIT/HG...☆1,721Updated 8 months ago
- JexBoss: Jboss (and Java Deserialization Vulnerabilities) verify and EXploitation Tool☆2,453Updated 5 years ago
- CMS漏洞测试用例集合☆1,741Updated 6 years ago
- SSRF (Server Side Request Forgery) testing resources☆2,394Updated 5 months ago
- Neo-reGeorg is a project that seeks to aggressively refactor reGeorg☆3,027Updated last month
- Automatic SSRF fuzzer and exploitation tool☆3,133Updated last month
- A fast sub domain brute tool for pentesters☆3,528Updated 2 years ago
- The cheat sheet about Java Deserialization vulnerabilities☆3,079Updated last year
- Server-Side Template Injection and Code Injection Detection and Exploitation Tool☆3,897Updated 11 months ago
- A fast vulnerability scanner helps pentesters pinpoint possibly vulnerable targets from a large number of web servers☆2,241Updated 3 months ago
- latest version of scanners for IIS short filename (8.3) disclosure vulnerability☆1,499Updated last year
- an IIS shortname Scanner☆544Updated 2 years ago
- 各种漏洞poc、Exp的收集或编写☆2,417Updated last year
- Webshell && Backdoor Collection☆1,874Updated 4 years ago
- List of Awesome CobaltStrike Resources☆4,110Updated last year
- JSFinder is a tool for quickly extracting URLs and subdomains from JS files on a website.☆2,744Updated 3 years ago
- Web Content Discovery Tool☆896Updated 9 months ago
- 🕷️ A `.git` folder exploiting tool that is able to restore the entire Git repository, including stash, common branches and common tags.☆1,501Updated 2 months ago
- A `.git` folder disclosure exploit☆3,305Updated 2 years ago
- Awesome Burp Suite Resources. 400+ open source Burp plugins, 400+ posts and videos.☆1,025Updated 5 years ago
- TCP/UDP Non-HTTP Proxy Extension (NoPE) for Burp Suite.☆1,607Updated 10 months ago
- pocsuite3 is an open-sourced remote vulnerability testing framework developed by the Knownsec 404 Team.☆3,702Updated last month