Javascript payload that inject a malicious payload into the copy-buffer of the victim
☆37May 25, 2018Updated 8 years ago
Alternatives and similar repositories for xss-to-rce
Users that are interested in xss-to-rce are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆29May 14, 2019Updated 7 years ago
- Subdomains-enumeration, subdomain-takeover monitoring api and S3 bucket scanner.☆39Nov 21, 2025Updated 8 months ago
- A PoC exploit for CVE-2023-23752 - Joomla Improper Access Check in Versions 4.0.0 through 4.2.7☆16Feb 1, 2026Updated 5 months ago
- ☆37Feb 12, 2018Updated 8 years ago
- ☆20Mar 9, 2021Updated 5 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Example of a vulnerable NodeJS+Express+MySQL service☆20Jan 17, 2023Updated 3 years ago
- port+dir+param bruteforcing at the same time using ffuf☆17Jul 27, 2024Updated 2 years ago
- A python RCE exploit on QNAP-QTS☆15Sep 15, 2020Updated 5 years ago
- Vulnerability analysis and PoC for the Apache Tomcat - CGIServlet enableCmdLineArguments Remote Code Execution (RCE)☆30Sep 4, 2021Updated 4 years ago
- collection of beacon object file (Cobalt strike)☆12Jan 21, 2023Updated 3 years ago
- A natural evolution of a evolution of Burp Suite's Repeater tool☆15Jun 29, 2026Updated last month
- A simple script that edits the XML of a macro-enabled Word document (.docm or Word 97 document) to add a reference to a remote stylesheet…☆11Oct 5, 2022Updated 3 years ago
- This script leverages CVE-2023046604 (Apache ActiveMQ) to generate a pseudo shell. The vulnerability allows for remote code execution due…☆18Jan 24, 2024Updated 2 years ago
- Ivanti EPM SQL Injection Remote Code Execution Vulnerability☆25Jun 12, 2024Updated 2 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- A Web-UI for subdomain enumeration (subfinder)☆55Jun 5, 2020Updated 6 years ago
- An exploit for Microsoft IIS 6.0 CVE-2017-7269☆22Mar 29, 2017Updated 9 years ago
- Application Security Mind Maps☆12Apr 10, 2021Updated 5 years ago
- Making a lab and testing the CVE-2024-3116, a Remote Code Execution in pgadmin <=8.4☆13Apr 11, 2024Updated 2 years ago
- Contains nuclei templates for security testing and POCs.☆17Oct 19, 2024Updated last year
- 漏洞检测与利用常见api库☆34Nov 20, 2022Updated 3 years ago
- A lightweight Python tool to analyze PCAP files and generate network traffic reports. It detects traffic patterns, security concerns, and…☆19Sep 25, 2024Updated last year
- Run commands over RDP on massive number of hosts☆11Nov 26, 2018Updated 7 years ago
- Match & Replace rules for Portswigger's Burp that operate globally across all utilities.☆24Jan 26, 2026Updated 6 months ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- Custom Python shellcode encryptor and obfuscator☆15Jul 31, 2025Updated 11 months ago
- POC for CVE-2020-9484☆13Feb 10, 2021Updated 5 years ago
- CLI monitor for windows process- & file activity☆98Nov 20, 2020Updated 5 years ago
- The autoexpect of pwntools☆18Feb 10, 2019Updated 7 years ago
- SQLi Hunter is a tool designed to find potential SQL injection vulnerabilities by fetching URLs from the Wayback Machine and checking for…☆18Jun 4, 2025Updated last year
- notes on applied computer security☆11Jun 27, 2023Updated 3 years ago
- ☆13Jun 15, 2023Updated 3 years ago
- Burp Extender plugin that generates a sitemap of a website using Wayback Machine☆12Jun 18, 2018Updated 8 years ago
- havoc kaine plugin to mitigate PAGE_GUARD protected image headers using JOP gadgets☆43Aug 6, 2024Updated last year
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- One-Click Subdomain Finder – Fast, lightweight browser bookmarklet for subdomain discovery.☆19Aug 3, 2025Updated 11 months ago
- ☆10Aug 13, 2018Updated 7 years ago
- Testing tools for Oracle Forms☆15Oct 23, 2025Updated 9 months ago
- Scans WordPress sites to find unclaimed plugin slugs on the public directory.☆27Oct 12, 2025Updated 9 months ago
- This repository contains a Python script to automate the process of testing for a vulnerability known as Text4Shell, referenced under the…☆13Jun 27, 2023Updated 3 years ago
- Auto Move Your Cursor to the Focused Window while You Alt-Tab or Touchboard for Windows☆10Dec 11, 2024Updated last year
- A PoC weaponising CustomXMLPart for hiding malware code inside of Office document structures.☆39Aug 8, 2022Updated 3 years ago