
CVE-2022-22947-Rce_POC
批量url检测Spring-Cloud-Gateway-CVE-2022-22947

批量url检测Spring-Cloud-Gateway-CVE-2022-22947

PoC exploit for CVE-2022-22947: SpEL injection in Spring Cloud Gateway enabling remote command execution via crafted Actuator API routes.

Insecure TeamCity CI environment for hands-on penetration testing training: reconnaissance, credential theft, privilege escalation, and lateral…

Apache APISIX apisix/batch-requests RCE

A Burp Extender plugin, that will make binary soap objects readable and modifiable.

Hackable HTTP proxy for resiliency testing and simulated network conditions

PortSwigger Burp Plugin for the Log4j (CVE-2021-44228)

Static code analysis scanner for WordPress plugins and themes. Detects vulnerabilities like XSS and SQL injection via modular, extensible…

A Security Tool for Enumerating WebSockets

Automated HTTP Request Repeating With Burp Suite

The DevSecOps toolset for REST APIs

A Burp Suite extension made to automate the process of finding reverse proxy path based SSRF.

This project is about creating and publishing threat model examples.

Regex-based malicious traffic detection add-on for OWASP ZAP. Flags compromised websites by matching URI and HTML patterns, with color-coded alerts…

BurpSuite Standard/Private Collaborator Library

WEB SERVICE SECURITY ASSESSMENT TOOL

The OWASP Benchmark GitHub repo has moved to: https://github.com/OWASP-Benchmark/BenchmarkJava