9.6. 漏洞利用/检测¶
9.6.2. 非结构化数据库注入¶
9.6.4. XSS¶
9.6.5. SSRF¶
9.6.7. HTTP Request Smuggling¶
smuggler An HTTP Request Smuggling / Desync testing tool written in Python
h2cSmuggler HTTP Request Smuggling over HTTP/2 Cleartext (h2c)
9.6.11. struts¶
9.6.12. CMS¶
TPscan 一键ThinkPHP漏洞检测
dedecmscan 织梦全版本漏洞扫描
9.6.13. Java框架¶
ShiroScan Shiro<=1.2.4反序列化检测工具
fastjson rce tool fastjson命令执行利用工具
9.6.14. DNS相关漏洞¶
singularity A DNS rebinding attack framework by NGC Group
9.6.15. DNS数据提取¶
9.6.16. DNS 隧道¶
9.6.18. XXE¶
DTD Finder List DTDs and generate XXE payloads using those local DTDs
9.6.19. 反序列化¶
Java Serialization Dumper A tool to dump Java serialization streams in a more human readable form
marshalsec Java Unmarshaller Security - Turning your data into code execution
gadgetinspector A byte code analyzer for finding deserialization gadget chains in Java applications
9.6.20. JNDI¶
Rogue JNDI A malicious LDAP server for JNDI injection attacks
9.6.21. 端口Hack¶
9.6.23. 无线¶
9.6.24. 中间人攻击¶
Responder Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv2/LMv2, Extended Security NTLMSSP and Basic HTTP authentication.
toxy Hackable HTTP proxy for resiliency testing and simulated network conditions
bettercap The Swiss Army knife for 802.11, BLE and Ethernet networks reconnaissance and MITM attacks
9.6.27. Shellcode¶
go shellcode A repository of Windows Shellcode runners and supporting utilities