vp777 / surferFTPLinks
SSRF to TCP Port Scanning, Banner and Private IP Disclosure by abusing the FTP protocol/clients
☆70Updated 4 years ago
Alternatives and similar repositories for surferFTP
Users that are interested in surferFTP are comparing it to the libraries listed below
Sorting:
- The tool exfiltrates data from Couchbase database by exploiting N1QL injection vulnerabilities.☆77Updated 5 years ago
- Writeup of CVE-2020-15906☆49Updated 5 years ago
- Query various sources for CVE proof-of-concepts☆51Updated 2 years ago
- A python-based padding oracle tool☆20Updated last year
- A Burp Suite extension for headless, unattended scanning.☆37Updated 5 years ago
- Hacking Artifactory with server side template injection☆51Updated 5 years ago
- Gopher Tomcat Deployer☆48Updated 6 years ago
- DO NOT RUN THIS.☆47Updated 4 years ago
- Looking for JAR files that are vulnerable to Log4j RCE (CVE‐2021‐44228)?☆45Updated 3 years ago
- ☆36Updated 9 months ago
- client-side prototype pullution vulnerability scanner☆46Updated 4 years ago
- RCE for Pega Infinity >= 8.2.1, Pega Infinity <= 8.5.2☆60Updated 4 years ago
- Simple python script to check against hypothetical JWT vulnerability.☆51Updated 4 years ago
- Copy as XMLHttpRequest BurpSuite extension☆31Updated 4 years ago
- BurpSuite's payload-generation extension aiming at applying fuzzed test-cases depending on the type of payload (integer, string, path; JS…☆40Updated 4 years ago
- A malicious LDAP server for JNDI injection attacks☆75Updated 11 months ago
- ☆19Updated 5 years ago
- A Burp extension to show the Collaborator client in a tab☆24Updated 2 years ago
- Burp extension to filter JSON on the fly with JQ queries in the HTTP message viewer.☆48Updated 4 years ago
- an Evil Java RMI Registry.☆51Updated 2 years ago
- Recurrent Neural Network SubDomain Discovery Tool☆95Updated 3 years ago
- Burp extension to generate multi-step CSRF POC.☆30Updated 6 years ago
- Compiles a list of major CDN and WAF subnets.☆66Updated this week
- Exploits developed by Mikael Kall☆47Updated 2 years ago
- SQL injection script for MSSQL that extracts domain users from an Active Directory environment based on RID bruteforcing☆90Updated 5 years ago
- A bash script that automates the scanning of a target network for HTTP resources through XXE☆38Updated 4 years ago
- POC Script for CVE-2020-12800: RCE through Unrestricted File Type Upload☆27Updated 2 years ago
- Some private tools i decided to release for public.☆49Updated last year
- This script helps to identify CVE-2021-26855 ssrf Poc☆22Updated 4 years ago
- BURP extension to record every HTTP request send via BURP and create an audit trail log of an assessment.☆66Updated 5 months ago