wavestone-cdt / hadoop-attack-library
A collection of pentest tools and resources targeting Hadoop environments
☆263Updated 3 years ago
Alternatives and similar repositories for hadoop-attack-library:
Users that are interested in hadoop-attack-library are comparing it to the libraries listed below
- ZAP/Burp plugin that generate script to reproduce a specific HTTP request (Intended for fuzzing or scripted attacks)☆290Updated last year
- Jenkins RCE Proof-of-Concept: SECURITY-1266 / CVE-2019-1003000 (Script Security), CVE-2019-1003001 (Pipeline: Groovy), CVE-2019-1003002 (…☆312Updated 5 years ago
- Jenkins RCE PoC. From unauthenticated user to remote code execution, it's a hacker's dream!☆295Updated 5 years ago
- YSOSERIAL Integration with burp suite☆163Updated 2 years ago
- A collection of curated Java Deserialization Exploits☆594Updated 3 years ago
- A code demonstrating CVE-2018-0886☆263Updated 4 years ago
- Central Repo for Burp extensions☆150Updated 3 years ago
- Java deserialization exploitation lab.☆236Updated 5 years ago
- CVE-2018-2893-PoC☆103Updated 6 years ago
- Java serialization brute force attack tool.☆123Updated 7 years ago
- siberas JMX exploitation toolkit☆129Updated last year
- Automatically identify deserialisation issues in Java and .NET applications by using active and passive scans☆575Updated 3 years ago
- Utils☆266Updated 9 years ago
- CVE-2018-13379☆253Updated 5 years ago
- JNDI Attacking Tool☆236Updated 2 years ago
- Burp extension to perform Java Deserialization Attacks☆209Updated last year
- An exploit for Apache Struts CVE-2017-9805☆249Updated 7 years ago
- A lab for playing with NoSQL Injection☆129Updated 4 years ago
- Script to test for Cisco ASA path traversal vulnerability (CVE-2018-0296) and extract system information.☆202Updated last year
- WebLogic Exploit☆142Updated 6 years ago
- ☆235Updated 5 years ago
- RCE on Apache Solr using deserialization of untrusted data via jmx.serviceUrl☆209Updated 5 years ago
- poison and relay NTLM credentials☆174Updated 6 years ago
- AWS Extender (Cloud Storage Tester) is a Burp plugin to assess permissions of cloud storage containers on AWS, Google Cloud and Azure.☆246Updated 2 years ago
- A mini webserver with FTP support for XXE payloads☆327Updated last year
- POC Exploit for Apache Tomcat 7.0.x CVE-2017-12615 PUT JSP vulnerability.☆111Updated 2 years ago
- Security checks pack for Burp Suite☆138Updated 7 years ago
- A Burp extension for generic extraction and reuse of data within HTTP requests and responses.☆91Updated 3 years ago
- Damn Vulnerable Thick Client App☆147Updated 4 years ago
- SSRF Proxy facilitates tunneling HTTP communications through servers vulnerable to Server-Side Request Forgery.☆456Updated 7 years ago