Ssti Payloads🎯 Server Side Template Injection Payloads
Stars: ✭ 150 (-44.24%)
GowaptGo Web Application Penetration Test
Stars: ✭ 300 (+11.52%)
dotnet-security-unit-testsA web application that contains several unit tests for the purpose of .NET security
Stars: ✭ 25 (-90.71%)
gulp-inject-partialsA recursive injection of partials based on their path name. Implementation of specific case of gulp-inject.
Stars: ✭ 26 (-90.33%)
SQL-XSSA few SQL and XSS attack tools
Stars: ✭ 29 (-89.22%)
dependency-check-py🔐 Shim to easily install OWASP dependency-check-cli into Python projects
Stars: ✭ 44 (-83.64%)
linklink is a command and control framework written in rust
Stars: ✭ 345 (+28.25%)
Dpspider大众点评爬虫、API,可以进行单独城市、单独地区、单独商铺的爬取、搜索、多类型地区搜索、信息获取、提供MongoDB数据库存储支持,可以进行点评文本解密的爬取、存储
Stars: ✭ 259 (-3.72%)
domaineratorSimple application written in Go that combines two wordlists and a list of TLDs to form domain names and check if they are already registered.
Stars: ✭ 26 (-90.33%)
giuliusTools for loading file-based configuration files and mapping them with Guice's ``@Named`` and more
Stars: ✭ 18 (-93.31%)
CrawlBoxEasy way to brute-force web directory.
Stars: ✭ 118 (-56.13%)
template-injection-workshopWorkshop on Template Injection (6 exercises) covering Twig, Jinja2, Tornado, Velocity and Freemaker engines.
Stars: ✭ 99 (-63.2%)
nosqlilabA lab for playing with NoSQL Injection
Stars: ✭ 90 (-66.54%)
owtf-dockerDocker repository for OWTF (64-bit Kali)
Stars: ✭ 32 (-88.1%)
WriteupsThis repository contains writeups for various CTFs I've participated in (Including Hack The Box).
Stars: ✭ 61 (-77.32%)
WalineA Simple, Safe Comment System inspired by Valine | 一款基于 Valine 衍生的简洁、安全的评论系统
Stars: ✭ 260 (-3.35%)
Horus-EyeJust Simple Code To Play With Android Payloads (;
Stars: ✭ 54 (-79.93%)
DomainkerBugBounty Tool
Stars: ✭ 40 (-85.13%)
cyclonedx-maven-pluginCreates CycloneDX Software Bill of Materials (SBOM) from Maven projects
Stars: ✭ 103 (-61.71%)
Spring Boot DemoSpring Boot & Spring Cloud & Spring Security Demo Case(Spring学习示例实战项目)
Stars: ✭ 255 (-5.2%)
specificationSoftware Bill of Material (SBOM) standard designed for use in application security contexts and supply chain component analysis
Stars: ✭ 129 (-52.04%)
refuelLightweight dependency injection engine and DI-driven tools.
Stars: ✭ 21 (-92.19%)
K8sImportant production-grade Kubernetes Ops Services
Stars: ✭ 253 (-5.95%)
EVA2Another version of EVA using anti-debugging techs && using Syscalls
Stars: ✭ 223 (-17.1%)
juice-shop-ctfCapture-the-Flag (CTF) environment setup tools for OWASP Juice Shop supporting CTFd, FBCTF and RootTheBox
Stars: ✭ 287 (+6.69%)
MgmMongo Go Models (mgm) is a fast and simple MongoDB ODM for Go (based on official Mongo Go Driver)
Stars: ✭ 265 (-1.49%)
dependency-track-maven-pluginMaven plugin that integrates with a Dependency Track server to submit dependency manifests and optionally fail execution when vulnerable dependencies are found.
Stars: ✭ 28 (-89.59%)
gDorksVulnerable website scraper
Stars: ✭ 25 (-90.71%)
Graphql To MongodbAllows for generic run-time generation of filter types for existing graphql types and parsing client requests to mongodb find queries
Stars: ✭ 261 (-2.97%)
pakkeroPakkero is a binary packer written in Go made for fun and educational purpose. Its main goal is to take in input a program file (elf binary, script, even appimage) and compress it, protect it from tampering and intrusion.
Stars: ✭ 143 (-46.84%)
cyclonedx-gomodCreates CycloneDX Software Bill of Materials (SBOM) from Go modules
Stars: ✭ 27 (-89.96%)
ProxyboundLinux applications proxifier
Stars: ✭ 81 (-69.89%)
Commodity Injection SignaturesCommodity Injection Signatures, Malicious Inputs, XSS, HTTP Header Injection, XXE, RCE, Javascript, XSLT
Stars: ✭ 267 (-0.74%)
NbInjectionPoC for inject zygote process by replacing system native bridge support
Stars: ✭ 70 (-73.98%)
opyoidDependency injection library for Python
Stars: ✭ 34 (-87.36%)
HatVenomHatVenom is a HatSploit native powerful payload generation tool that provides support for all common platforms and architectures.
Stars: ✭ 84 (-68.77%)
RocketjobRuby's missing background and batch processing system
Stars: ✭ 258 (-4.09%)
fusionA simple automated dependency injection library for TypeScript, supporting React class and functional components.
Stars: ✭ 18 (-93.31%)
BruteSploitBruteSploit is a collection of method for automated Generate, Bruteforce and Manipulation wordlist with interactive shell. That can be used during a penetration test to enumerate and maybe can be used in CTF for manipulation,combine,transform and permutation some words or file text :p
Stars: ✭ 26 (-90.33%)
poc-jwtPOC about usage of JSON Web Tokens (JWT) in a secure way.
Stars: ✭ 18 (-93.31%)
Doclever做最好的接口管理平台
Stars: ✭ 2,849 (+959.11%)
certexfilExfiltration based on custom X509 certificates
Stars: ✭ 18 (-93.31%)
MissedITFully Featured hack Always Free As Feedom
Stars: ✭ 30 (-88.85%)
logmapLog4j jndi injection fuzz tool
Stars: ✭ 60 (-77.7%)
containers-security-projectA place for documenting threats and mitigations related to containers orchestrators (Kubernetes, Swarm etc)
Stars: ✭ 25 (-90.71%)
invasit-networkAutomatizated bash script to invade WPA2 networks with wordlist method
Stars: ✭ 16 (-94.05%)
CIS-Ubuntu-20.04-AnsibleAnsible Role to Automate CIS v1.1.0 Ubuntu Linux 18.04 LTS, 20.04 LTS Remediation
Stars: ✭ 150 (-44.24%)
Zenject-2019Dependency Injection Framework for Unity3D
Stars: ✭ 2,567 (+854.28%)
ezinjectModular binary injection framework, successor of libhooker
Stars: ✭ 47 (-82.53%)