viperbluff / WAF_busterLinks
Disrupt WAF by abusing SSL/TLS Ciphers
☆48Updated 7 years ago
Alternatives and similar repositories for WAF_buster
Users that are interested in WAF_buster are comparing it to the libraries listed below
Sorting:
- Brute forcer and shell deployer for WildFly☆101Updated 7 years ago
- WhiteBox CMS analysis☆68Updated 2 years ago
- Test CVE-2018-0296 and extract usernames☆106Updated 7 years ago
- Tool for checking Whether a domain or its multiple sub-domains are up and running.☆72Updated 6 years ago
- ☆29Updated 7 years ago
- WORK IN PROGRESS. Waits for MSF session then automatically gets domain admin☆64Updated 3 years ago
- Deploy payloads to *Nix systems en masse☆109Updated 5 years ago
- ☆63Updated 7 years ago
- Firework is a proof of concept tool to interact with Microsoft Workplaces creating valid files required for the provisioning process.☆44Updated 5 years ago
- A PoC Java Stager which can download, compile, and execute a Java file in memory.☆108Updated 7 years ago
- CVE-2017-10271 WEBLOGIC RCE (TESTED)☆39Updated 8 years ago
- Automate SSH communication with firewalls, switches, etc.☆27Updated 7 years ago
- Scan for open S3 buckets and dump☆38Updated 7 years ago
- Post Exploitation agent which uses a browser to do C2 operations.☆103Updated 7 years ago
- Automatically forward HTTP GET & POST requests to SQLMap's API to test for SQLi and XSS☆80Updated 3 years ago
- Finally, reverse/bind shells written in python, encrypted with ssl!☆39Updated 6 years ago
- Automates credential skimming from service accounts in Windows Registry☆77Updated 5 years ago
- Listing subdomains about a main domain☆58Updated 7 years ago
- AV Bypass☆29Updated 7 years ago
- Some scripts and exploits☆148Updated 7 years ago
- Joomla Vulnerability Component Scanner☆62Updated 7 years ago
- Penetration Testing Tools Developed by AppSec Consulting.☆48Updated 7 years ago
- An adaptive, intelligent XSS fuzzer that learns how the response is reflected and carefully crafts an XSS payload to match☆42Updated 13 years ago
- Just a silly recon tool that uses data from SSL Certificates to find potential host names☆29Updated 2 years ago
- Socks5 server over Websockets☆40Updated 7 years ago
- Using IPv6 to Bypass Security☆92Updated 3 months ago
- A tool to analyse JMX API security level.☆43Updated 11 years ago
- Async'ly gather unique usernames thru null SMB sessions and bruteforce them with 2 passwords☆51Updated 8 years ago
- Burp extension to help developers replicate findings from pen tests☆70Updated last year
- A relatively flexible tool to parse mimikatz output☆35Updated 9 years ago