1lastBr3ath/SpectreExploit
SpectreExploit POC
SpectreExploit POC
This repository is a suplimentary material for Android Training's done by Anant Shrivastava
Burp Extension for a passive scanning JS files for endpoint links.
Herramienta para evadir disable_functions y open_basedir
Automatic authorization enforcement detection extension for burp suite written in Jython developed by Barak Tawily in order to ease application security people work and allow them perform an automatic authorization tests
Automated HTTP Request Repeating With Burp Suite
Collection of Scripts for shodan searching stuff.
All releases of the security research group (a.k.a. hackers) The Hacker's Choice
A tool which scrapes public github repositories for common naming conventions in variables, folders and files
Exfiltrate blind remote code execution output over DNS via Burp Collaborator.
Scanner for CVE-2020-0796 - SMBv3 RCE
secretz, minimizing the large attack surface of Travis CI
This page contains a checklist of the tasks you typically need to perform when carrying out a comprehensive attack against a web application. The page has been modified to store user-interaction in browser's localStorage making it easier to track tests that are pending and/or are already covered.
CSP (Content Security Policy) reports server which forwards reports to Elasticsearch.
Open Security Summit 2018
This is a webshell open source project
Script to steal passwords from ssh.
A simple too to convert the IP to a DWORD IP
A semi-interactive PHP shell compressed into a single file.
A script to enumerate virtual hosts on a server.
The DetectDynamicJS Burp Extension provides an additional passive scanner that tries to find differing content in JavaScript files and aid in finding user/session data.
Custom pentesting tools
A Burp Suite Pro extension which augments your proxy traffic by injecting non-invasive headers designed to reveal backend systems by causing pingbacks to Burp Collaborator