Ecosyste.ms: Awesome

An open API service indexing awesome lists of open source software.

https://github.com/whitel1st/docem

A tool to embed XXE and XSS payloads in docx, odt, pptx, xlsx files (oxml_xxe on steroids)

bugbounty oxml xss xss-injection xxe xxe-injection

Last synced: 14 Jun 2024

https://github.com/JoyChou93/java-sec-code

Java web common vulnerabilities and security code which is base on springboot and spring security

benchmark code cors deserialize java jsonp rce rmi security spel sqli ssrf tomcat web xxe

Last synced: 30 May 2024

https://github.com/Li4n0/revsuit

RevSuit is a flexible and powerful reverse connection platform designed for receiving connection from target host in penetration.

bug-bounty dnslog oob out-of-band pentest-tool rce reverse-connection ssrf xxe

Last synced: 12 May 2024

https://github.com/ztgrace/mole

Mole is a framework for identifying and exploiting out-of-band application vulnerabilities.

appsec burp-extensions infosec oob penetration-testing python security-tools xss xxe

Last synced: 07 May 2024

https://github.com/h0nus/MyPayloads

Just a useless set of payload created by me. Saved here for remembrance.

custom lfi list own payload rce rfi sqli vulnerabilities web xss xxe

Last synced: 24 Apr 2024

https://github.com/chennqqi/godnslog

An exquisite dns&http log server for verify SSRF/XXE/RFI/RCE vulnerability

dnslog rce rfi ssrf vulnerability webscan xss xxe

Last synced: 12 Apr 2024

https://github.com/GoSecure/dtd-finder

List DTDs and generate XXE payloads using those local DTDs.

dtd hacktoberfest security xxe

Last synced: 10 Apr 2024

https://github.com/zer0yu/berserker

A list of useful payloads for Web Application Security and Pentest/CTF

ctf fuzzing intruder pentest scanner sqli web-application xss xxe

Last synced: 05 Apr 2024

https://github.com/joychou93/sks

Security Knowledge Structure(安全知识汇总)

deserialize java nginx-lua php python security waf webshell xxe

Last synced: 05 Apr 2024