SpellBook

    • <- Back to main page
    • Welcome!
      • Port Scan
      • Public S3 Buckets
      • Source Code
        • Subdomain Enumeration
        • Assets Enumeration
        • Probing
          • Cookie Manipulation
          • DOM Clobbering
          • Open Redirect
          • Web Messages Vulnerabilities
          • BOOLEAN and TIME
          • ERROR
          • Out-of-Band DNS Exfiltration
          • UNION
          • Content Security Policies
          • DOMPurify
          • HttpOnly Cookie Attribute
          • Same-Origin Policy
          • WAF
        • Code Injection
        • File Upload
        • GraphQL
        • IDOR - Insecure Direct Object References
        • LFI - Local File Inclusion
        • S3 Bucket Access
        • SSRF - Server Side Request Forgery
        • SSTI - Server Side Template Injection
        • Websocket
        • XXE - XML External Entity
        • Cache Poisoning
        • CRLF Injection
        • Hosts Header Attacks
        • JWT
        • Ldap Injection
        • Mongodb Injection
        • OAuth
        • Padding Oracles
        • PDF Generation Injection
        • Request Smuggling
        • SAML
        • Session Puzzling
        • SSI Injection
        • TLS (SSL) Attacks
        • XPath Injection
        • XSLT Injection
          • ASP.NET
          • PHP
          • Python
        • Decompilation Tools
        • IIS Installation
        • Prototype Pollution
        • Type Juggling
        • Drupal
        • GitLab
        • Jenkins
        • Joomla
        • PRTG
        • Splunk
        • Tomcat
        • WordPress
      • Misc
      • 110,995 TCP - POP3
      • 1151 TCP - Oracle DB
      • 143,993 TCP - IMAP
      • 1433 TCP - MSSQL
      • 161,162,10161,10162 UDP - SNMP
      • 2049 TCP - NFS
      • 21 TCP - FTP
      • 25,465,587 TCP - SMTP
      • 27017 TCP - Mongodb
      • 3306 TCP - MySQL
      • 3389 TCP - RDP
      • 4222 TCP - NATS
      • 445 TCP - SMB
      • 53 TCP UDP - DNS
      • 5985,5986 TCP - WinRM
      • 623 UDP - IPMI
      • 873 TCP - Rsync
      • Default Credentials
      • R-Services
      • Timeroasting
      • Network Hosts
      • Ping Sweep
      • Applocker
      • Defender
      • Firewall
      • Powershell
      • Restriced Shell
          • Dirty Pipe
          • Logrotate
          • Netfilter
          • Sudo CVE
          • Adm
          • Docker
          • LXC
        • Credential Search
        • Crontab
        • Enumeration
        • Kubernetes
        • NFS
        • Path Injection
        • Python Library Hijack
        • Sudo
          • AlwaysInstallElevated
          • DNSAdmins
          • Event Log Readers
          • Print Operators
          • SeBackupPrivilege
          • SeDebugPrivilege
          • SeImpersonatePrivilege
          • SeRestorePrivilege
          • Server Operators
          • SeTakeOwnershipPrivilege
        • Credential Looting
        • DPAPI
        • Enumeration
        • PrintNightmare
        • UAC Bypass
        • User Interactions
      • Credentials in Memory
      • Kerberos Looting - Linux
      • Kerberos Looting - Windows
      • Virtual Disks
        • Bloodhound Setup
        • Deleted Objects
        • Direct Object Rights
        • Get All Properties
        • Password Policy
        • User Enumeration
        • Writable Objects
      • ADCS Attacks
      • DACL Abuse
      • DCSync
      • Impacket-Exec
      • Kerberoasting
      • Kerberos
      • LAPS
      • NoPAC
      • NTLM Relay
      • Password Spray - From Linux
      • Password Spray - From Windows
      • RDP Session Hijacking
      • Relay Potato
      • Runas
      • Chisel
      • Dnscat2
      • Ligolo-Ng
      • Metasploit
      • Port Forward
      • SSH
        • Edge Cases
        • Encrypted Transfer
        • Linux to Linux
        • Linux to Windows
        • Nginx
        • Hashcat
        • HashID
        • John
        • Cewl
        • Metasploit
        • NodeJS
        • OpenSSL
        • Powershell
        • Sed
        • Shell-Fu
        • SQL Syntax
        • Sqlmap
      • Interactive Shell
      • Tips and Setup

    Decompilation Tools

    • .NET
      • Dotpeek (Windows)
    • Java
      • FernFlower
      • JD-GUI ( Windows)

    .NET#

    Better use windows for this. ilSPY is a little too unstable

    Dotpeek (Windows)#

    https://www.jetbrains.com/decompiler/

    Java#

    FernFlower#

    Tool to decompile java archive. Install guide:

    git clone https://github.com/JetBrains/fernflower.git
    cd fernflower
    ./gradlew build
    cd build/libs

    Usage:

    mkdir src
    java -jar fernflower.jar app.jar src
    cd src
    jar -xf app.jar

    JD-GUI ( Windows)#

    https://java-decompiler.github.io/ https://www.java.com/en/download/

    Backward Python IIS Installation Forward
    • .NET
      • Dotpeek (Windows)
    • Java
      • FernFlower
      • JD-GUI ( Windows)