A list of useful payloads and bypass for Web Application Security and Pentest/CTF
-
Updated
Nov 29, 2020 - Python
{{ message }}
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
Git All the Payloads! A collection of web attack payloads.
A collection of Burpsuite Intruder payloads, BurpBounty payloads, fuzz lists, malicious file uploads and web pentesting methodologies and checklists.
A container repository for my public web hacks!
Undetectable Windows Payload Generation
Self-deployable file hosting service for red teamers, allowing to easily upload and share payloads over HTTP and WebDAV.
Use a Fake image.jpg to exploit targets (hide known file extensions)
Image Payload Creating/Injecting tools
Open Redirect Payloads
Chimera is a (shiny and very hack-ish) PowerShell obfuscation script designed to bypass AMSI and commercial antivirus solutions.
BurpCrypto is a collection of burpsuite encryption plug-ins, support AES/RSA/DES/ExecJs(execute JS encryption code in burpsuite).
Xss Payload Generator ~ Xss Scanner ~ Xss Dork Finder
A simple framework for sending test payloads for known web CVEs.
Common Web Managers Fuzz Wordlists
Research on UDP/TCP amplification vectors, payloads and mitigations against their use in DDoS Attacks
XSS Payload without Anything.
Fast exploitation based on metasploit.
Add a description, image, and links to the payloads topic page so that developers can more easily learn about it.
To associate your repository with the payloads topic, visit your repo's landing page and select "manage topics."