zer0yu / Berserker
A list of useful payloads for Web Application Security and Pentest/CTF
☆300Updated 8 months ago
Alternatives and similar repositories for Berserker:
Users that are interested in Berserker are comparing it to the libraries listed below
- A blind XXE injection callback handler. Uses HTTP and FTP to extract information. Originally written in Ruby by ONsec-Lab.☆516Updated 4 years ago
- WAF Bypass Cheatsheet☆212Updated 7 years ago
- Weblogic IIOP CVE-2020-2551☆333Updated 5 years ago
- Lab for exploring SSRF vulnerabilities☆246Updated 3 years ago
- SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in …☆139Updated 6 years ago
- Happy Hunting☆137Updated 6 years ago
- cvebase is a community-driven vulnerability data platform to discover the world's top security researchers and their latest disclosed vul…☆141Updated 4 years ago
- Tentacle is a POC vulnerability verification and exploit framework. It supports free extension of exploits and uses POC scripts. It suppo…☆372Updated last year
- MySQL fake server for read files of connected clients☆596Updated 7 years ago
- Redis 4.x & 5.x RCE☆141Updated 5 years ago
- burpsuite extension for check unauthorized vulnerability☆231Updated 4 years ago
- Cnvd-2020-10487 / cve-2020-1938, scanner tool☆293Updated 3 years ago
- forked from frohoff/ysoserial and added my own payloads.☆151Updated 5 years ago
- Apache Solr Exploits 🌟☆340Updated 4 years ago
- CVE-2019-2725 命令回显☆438Updated last year
- RedTeam资料收集整理☆328Updated 4 years ago
- 一个子域名接管检测工具☆139Updated 4 years ago
- Spring Boot Actuator (jolokia) XXE/RCE☆317Updated 4 years ago
- Burp Suite Plugin: Convert the json text that returns the body into HTTP request parameters.☆101Updated 3 years ago
- An exquisite dns&http log server for verify SSRF/XXE/RFI/RCE vulnerability☆466Updated last year
- Here you can find mostly all disclosed h1 reports☆348Updated 3 years ago
- weblogic t3 deserialization rce☆270Updated 7 years ago
- Awesome webshell collection. Including 150 Github repo, and 200+ blog posts.☆170Updated 5 years ago
- anti AV☆292Updated 5 years ago
- antsword bypass PHP disable_functions☆198Updated 2 years ago
- 用于漏洞排查的pocsuite3验证POC代码☆348Updated 2 years ago
- Bypassing WAF by abusing SSL/TLS Ciphers☆315Updated 3 years ago
- redis ssrf gopher generater & redis ssrf to rce by master-slave-sync☆85Updated 4 years ago
- 从shodan获取使用了相同favicon.ico的网站☆191Updated 6 years ago
- Reference: http://www.secgeek.net/bookfresh-vulnerability/☆139Updated 10 years ago