Stars
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
Cree este script basico en python para obtener la ip de una url con su codigo de estado (Estare agregandole muchas cosas...)
16u2 Bootloader to reprogram 16u2 + 328/2560 with Arduino IDE
POC Exploit for Apache Tomcat 7.0.x CVE-2017-12615 PUT JSP vulnerability.
This i2c sniffer can sniff the activities on an i2c bus running at up to 100kBaud. It runs on an Arduino Mega 2560 and needs 8 kB RAM.
Toutatis is a tool that allows you to extract information from instagrams accounts such as e-mails, phone numbers and more
Transparent proxy through Tor for Kali Linux OS
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the …
A framework like a metasploit containg a variety of modules for pentesting or ethical hacking. This repo willl be updated and new modules will be added time to time.
WSO2 RCE (CVE-2022-29464) exploit and writeup.
Remote Code Execution exploit for Apache servers. Affected versions: Apache 2.4.49, Apache 2.4.50
Apache2 2.4.49 - LFI & RCE Exploit - CVE-2021-41773
WAFW00F allows one to identify and fingerprint Web Application Firewall (WAF) products protecting a website.
Fast and powerful SSL/TLS scanning library.
Scripts para flojos como yo que les da pereza estar instalando cada paquete o dependencia de forma manual al momento de tener un s.o nuevo
LFI / RCE Unauthenticated - Apache 2.4.49 & 2.4.50
Checks for SSRF using built-in custom Payloads after fetching URLs from Multiple Passive Sources & applying complex patterns aimed at SSRF
ProFTPd 1.3.5 - (mod_copy) Remote Command Execution exploit and vulnerable container