yehgdotnet / S3Scanner
Scan for open S3 buckets and dump
☆36Updated 7 years ago
Alternatives and similar repositories for S3Scanner:
Users that are interested in S3Scanner are comparing it to the libraries listed below
- OWASP Skanda - SSRF Exploitation Framework☆38Updated 11 years ago
- Disrupt WAF by abusing SSL/TLS Ciphers☆48Updated 6 years ago
- Multithreaded Padding Oracle Attack on Oracle OAM (CVE-2018-2879)☆24Updated 5 years ago
- Parse X509 certificates to get the (sub)domains in it.☆28Updated 6 years ago
- PHP tool to test XSS☆22Updated 5 years ago
- ☆29Updated 6 years ago
- CVE-2017-10271 WEBLOGIC RCE (TESTED)☆38Updated 7 years ago
- Automate SSH communication with firewalls, switches, etc.☆26Updated 6 years ago
- Listing subdomains about a main domain☆58Updated 6 years ago
- Burp Suite plugin that allow to deserialize Java objects and convert them in an XML format. Unpack also gzip responses. Based on BurpJDSe…☆20Updated last year
- Strutsy - Mass exploitation of Apache Struts (CVE-2017-5638) vulnerability☆10Updated 6 years ago
- All about CVE-2018-14667; From what it is to how to successfully exploit it.☆50Updated 6 years ago
- Generate pentest reports based on github issues.☆17Updated 2 years ago
- Finally, reverse/bind shells written in python, encrypted with ssl!☆39Updated 5 years ago
- Burp plugin to do random fuzzing of HTTP requests☆33Updated 8 years ago
- Modified version of ActiveScan++ Burp Suite extension☆31Updated 8 years ago
- A Burp Suite content discovery plugin that add the smart into the Buster!☆31Updated 7 years ago
- CORS checking☆34Updated 6 years ago
- ☆47Updated 9 years ago
- Python tool for expired domain discovery in crossdomain.xml files☆23Updated 8 years ago
- Jira Information Gatherer☆28Updated 7 years ago
- Study about HQL injection exploitation.☆51Updated 8 years ago
- Firework is a proof of concept tool to interact with Microsoft Workplaces creating valid files required for the provisioning process.☆44Updated 4 years ago
- WhiteBox CMS analysis☆69Updated last year
- AV Bypass☆29Updated 7 years ago
- AWS S3 Bucket/Object Finder☆25Updated 7 years ago
- Proof of concept written in Python to show that in some situations a SSRF vulnerability can be used to steal NTLMv1/v2 hashes.☆57Updated 7 years ago
- Async'ly gather unique usernames thru null SMB sessions and bruteforce them with 2 passwords☆51Updated 7 years ago
- A Burp Suite extension that automatically marks similar requests as 'out-of-scope'.☆43Updated 4 years ago
- Penetration Testing Tools Developed by AppSec Consulting.☆48Updated 6 years ago