wavestone-cdt / hadoop-attack-libraryLinks
A collection of pentest tools and resources targeting Hadoop environments
☆265Updated 3 years ago
Alternatives and similar repositories for hadoop-attack-library
Users that are interested in hadoop-attack-library are comparing it to the libraries listed below
Sorting:
- Jenkins RCE Proof-of-Concept: SECURITY-1266 / CVE-2019-1003000 (Script Security), CVE-2019-1003001 (Pipeline: Groovy), CVE-2019-1003002 (…☆314Updated 6 years ago
- YSOSERIAL Integration with burp suite☆166Updated 2 years ago
- Jenkins RCE PoC. From unauthenticated user to remote code execution, it's a hacker's dream!☆296Updated 6 years ago
- Java deserialization exploitation lab.☆235Updated 6 years ago
- ZAP/Burp plugin that generate script to reproduce a specific HTTP request (Intended for fuzzing or scripted attacks)☆290Updated 2 years ago
- Exploit for Arbitrary File Read on Pulse Secure SSL VPN (CVE-2019-11510)☆363Updated 5 years ago
- A collection of curated Java Deserialization Exploits☆594Updated 4 years ago
- Automatically identify deserialisation issues in Java and .NET applications by using active and passive scans☆578Updated 3 years ago
- Java serialization brute force attack tool.☆123Updated 7 years ago
- Central Repo for Burp extensions☆151Updated 3 years ago
- Script to test if a server is vulnerable to the JetLeak vulnerability☆144Updated 9 years ago
- Apache Tomcat Remote Code Execution on Windows☆187Updated 5 years ago
- St2-057 Poc Example☆312Updated 6 years ago
- CVE-2018-2893-PoC☆103Updated 6 years ago
- CVE-2018-13379☆253Updated 5 years ago
- JNDI Attacking Tool☆240Updated 3 years ago
- SHELLING - a comprehensive OS command injection payload generator☆444Updated 5 years ago
- WebLogic Exploit☆142Updated 7 years ago
- Mogwai Java Management Extensions (JMX) Exploitation Toolkit☆173Updated 8 years ago
- Collection of bypass gadgets to extend and wrap ysoserial payloads☆372Updated 3 years ago
- A code demonstrating CVE-2018-0886☆265Updated 4 years ago
- Takes a URL and checks the system for the tilde enum vuln and then find the files.☆171Updated 6 years ago
- siberas JMX exploitation toolkit☆130Updated 2 years ago
- Burp extension to perform Java Deserialization Attacks☆212Updated last year
- CVE-2018-7600 - Drupal 7.x RCE☆72Updated 7 years ago
- RCE on Apache Solr using deserialization of untrusted data via jmx.serviceUrl☆210Updated 6 years ago
- An exploit for Apache Struts CVE-2018-11776☆302Updated 6 years ago
- Utils☆271Updated 9 years ago
- poison and relay NTLM credentials☆175Updated 6 years ago
- ☆236Updated 6 years ago