A collection of scripts that run on my web server. Mainly for debugging SSRF, blind XSS, and XXE vulnerabilities. This repository contains a set of scripts that can be used to test for common web vulnerabilities. * SSRF (Server-Side Request Forgery) - This script will make requests to a specified URL and check if it can be used to access internal systems. * Blind XSS - This script will inject JavaScript code into a specified URL and check if it can be used to steal user data. * XXE (XML External Entity) - This script will inject XML code into a specified URL and check if it can be used to access internal systems. These scripts are meant to be used for testing and educational purposes only. Please note that these scripts are not meant to be used for malicious purposes. If you have any questions or concerns, please feel free to reach out to me. Thank you for your understanding.
FEATURES
ALTERNATIVES
A low-interaction honeypot to detect and analyze attempts to exploit the CVE-2017-10271 vulnerability in Oracle WebLogic Server
A honeypot daemon project for processing, filtering, and redirecting incoming traffic to a sandbox environment.
A script for setting up a dionaea and kippo honeypot using Docker images.
A low interaction honeypot for detecting CVE-2018-0101 vulnerability in Cisco ASA component.
PINNED
Fabric Platform by BlackStork
Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.
Mandos Brief Newsletter
Stay ahead in cybersecurity. Get the week's top cybersecurity news and insights in 8 minutes or less.
Wiz
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.
Adversa AI
Adversa AI is a cybersecurity company that provides solutions for securing and hardening machine learning, artificial intelligence, and large language models against adversarial attacks, privacy issues, and safety incidents across various industries.