• Earn real money by being active: Hello Guest, earn real money by simply being active on the forum — post quality content, get reactions, and help the community. Once you reach the minimum credit amount, you’ll be able to withdraw your balance directly. Learn how it works.

application

  1. itsMe

    WhatWaf v1.5.4 Detect & bypass web application firewalls and protection systems

    WhatWaf is an advanced firewall detection tool whose goal is to give you the idea of “There’s a WAF?”. WhatWaf works by detecting a firewall on a web application and attempting to detect a bypass (or two) for said firewall, on the specified target. Features     Ability to run on a single URL...
  2. itsMe

    Door404 - Web application backdoor builder

    This Project Developed For 2 Reasons     First     " Help Beginners to learn coding . "     Second     " Help Newbie Servers Managers To Learn New Protection Tricks " Requirements     PHP     PHP CUrl OS     Linux Hidden content
  3. itsMe

    YAWAST Antecedent Web Application Security Toolkit

    YAWAST is an application meant to simplify initial analysis and information gathering for penetration testers and security auditors. It performs basic checks in these categories:     TLS/SSL – Versions and cipher suites supported; common issues.     Information Disclosure – Checks for...
  4. itsMe

    WhatWaf v1.5 Detect & bypass web application firewalls and protection systems

    WhatWaf is an advanced firewall detection tool whose goal is to give you the idea of “There’s a WAF?”. WhatWaf works by detecting a firewall on a web application and attempting to detect a bypass (or two) for said firewall, on the specified target. Features     Ability to run on a single URL...
  5. itsMe

    Konan - Advanced Web Application Dir Scanner

    Konan is an advanced open source tool designed to brute force directories and files names on web/application servers. Support Platforms     Linux     Windows     MacOSX Hidden content
  6. 1

    Exploits IBM Websphere Application Server Remote Code Execution

    This Metasploit module exploits untrusted serialized data processed by the WAS DMGR Server and Cells in the IBM Websphere Application Server. NOTE: There is a required 2 minute timeout between attempts as the neighbor being added must be reset. View the full article
  7. 1

    Exploits Oracle Application Testing Suite WebLogic Server Administration Console War Deployment

    This Metasploit module abuses a feature in WebLogic Server's Administration Console to install a malicious Java application in order to gain remote code execution. Authentication is required, however by default, Oracle ships with a "oats" account that you could log in with, which grants you...
  8. dEEpEst

    Learn Android Application Development

    Have a good overview of the Java programming language Install Android Studio and setup the environment Debug an Android Application Create a signed APK file to submit to the Google Play Store Use Explicit and Implicit Intents Make use of Fragments Create a Custom...
  9. 1

    Exploits XenForo 1.5.x Advanced Application Forms 1.2.2 Open Redirection

    XenForo version 1.5.x with Advanced Application Forms version 1.2.2 suffers from an open redirection vulnerability. View the full article
  10. itsMe

    PlayTube

    With PlayTube users can view & Interact with lasted videos and like and comment and more, now using the application is easier, and more fun! PlayTube is easy, secured, and it will be regularly updated. Demo...
  11. itsMe

    W3brute - Automatic Web Application Brute Force Attack Tool

    Hidden content w3brute is an open source penetration testing tool that automates attacks directly to the website's login page. w3brute is also supported for carrying out brute force attacks on all websites.   Features     Scanner:     w3brute has a scanner feature that serves to support the...
  12. itsMe

    Tools VOOKI - Web Application Vulnerability Scanner

    Vooki is a free web application vulnerability scanner. Vooki is a user-friendly tool that you can easily scan any web application and find the vulnerabilities. Vooki includes Web Application Scanner, Rest API Scanner, and reporting section Vooki – Web Application Scanner can help you to find...
  13. itsMe

    Tools Sitadel - Web Application Security Scanner

    Sitadel is basically an update for WAScan making it compatible for python >= 3.4 It allows more flexibility for you to write new modules and implement new features : Hidden content     Frontend framework detection     Content Delivery Network detection     Define Risk Level to allow...
  14. itsMe

    Tools Taipan v2.1 - Web Application Security Scanner

    Taipan is a an automated web application scanner that allows to identify web vulnerabilities in an automatic fashion. This project is the core engine of a broader project which includes other components, like a web dashboard where you can manage your scans, download a PDF report and a scanner...
  15. 1

    Exploits Twilio WEB To Fax Machine System Application 1.0 SQL Injection

    Twilio WEB To Fax Machine System Application version 1.0 suffers from a remote SQL injection vulnerability. View the full article
  16. 1

    Exploits Oracle Application Express AnyChart Flash-Based Cross Site Scripting

    Oracle Application Express versions prior to 5.1.4.00.08 suffer from a cross site scripting vulnerability. The vulnerability is located in the OracleAnyChart.swf file. User input passed through the "__externalobjid" GET parameter is not properly sanitized before being passed to the...
  17. 1

    Exploits University Application System 1.0 Cross Site Request Forgery / SQL Injection

    University Application System version 1.0 suffers from cross site request forgery and remote SQL injection vulnerabilities. View the full article
  18. 1

    Exploits Ivanti Workspace Control Application PowerGrid SEE Whitelist Bypass

    It was found that the PowerGrid application can be used to run arbitrary commands via the /SEE command line option. An attacker can abuse this issue to bypass Application Whitelisting in order to run arbitrary code on the target machine. This issue was successfully verified on Ivanti Workspace...
  19. 1

    Exploits Ivanti Workspace Control Application PowerGrid RWS Whitelist Bypass

    It was found that the PowerGrid application will execute rundll32.exe from a relative path when it is started with the /RWS command line option. An attacker can abuse this issue to bypass Application Whitelisting in order to run arbitrary code on the target machine. This issue was successfully...
  20. 1

    Exploits ownCloud iOS Application 3.7.3 Cross Site Scripting

    ownCloud version 3.7.3 for iOS suffers from a cross site scripting vulnerability. View the full article
Back
Top