
XXEinjector is a automates retrieving files using direct and out of band methods. Directory listing only works in Java applications. Bruteforcing method needs to be…

This Tools for controlling Access Control Systems Currently in Proof-of-Concept Mode. All commands are hard coded until taken out of PoC mode. Script: + ACAT…

+ Exploits a stack buffer overflow in AT-TFTP v1.9, by sending a request (get/write) for an overly long file name. Extracted from Metasploit. TODO: adjust…

An application that can sniff packets in a local network and display protocol information. Requirements: – Linux – Windows – Python 2.7 Feature List: +…

Python and Perl script to exploit ASP.net Padding Oracle vulnerability. + vuln scanning for ASP.NET padding oracle. + PadBuster v0.3.3 – Automated script for performing…

‘against.py‘ is a very fast ssh attacking script which includes a multithreaded port scanning module (tcp connect) for discovering possible targets and a multithreaded brute-forcing…

Brute force all services running on a target host. The results are returned in a table with each path, detected method, login and/or password. This…

XXEinjector is a automates retrieving files using direct and out of band methods. Directory listing only works in Java applications. Bruteforcing method needs to be…