Web-based "Zip bomb" which eats up all the memory and kills web browsers, scanners and bots.
-
Updated
Feb 7, 2023 - Go
Web-based "Zip bomb" which eats up all the memory and kills web browsers, scanners and bots.
用于测试解压缩软件容错性与防病毒引擎扫描深度的 Zip 压缩包炸弹(ZIP Bomb)验证项目。 A ZIP bomb proof-of-concept project for testing decompression utility tolerance and antivirus engine resilience.
Archive bomb scanner
ZIP 💣 httpd. Just a gift for scanners and bots.
A Python tool to detect and prevent PDF‑based DoS and Embedded JavaScript attacks.
Secure archive library: TAR/ZIP/7z extraction & creation with CVE protection. Type-safe Rust core, Python/Node.js bindings, zero unsafe code.
A tool to generate "zip bombs"
ZIP Bomb Creator is a tool used to create a ZIP file that is small in size but drastically expands when extracted.
Secure zip extraction for Rust & Python. Prevents Zip Slip, Zip Bombs, and symlink attacks.
💣 Browser-based ZIP bomb generator — create DEFLATE-compressed decompression bombs up to petabytes. For security research & AV testing only.
Bomb vulnerability scanners or IE11 with gzip https://blog.haschek.at/post/f2fda
A very simple zip-bomb
zipdu is a webservice implementation vulnerable to zip bombs and directory traversals. Written in multiple different languages
An educational ZIP-Bomb generator
Agent-grade ZIP CLI on the zipnative engine — create deterministic, reproducible archives, list and inspect without extracting, extract with zip-slip / zip-bomb / symlink guards, verify, stream, modify without recompression. Stable --json contract for AI agents, ISO/IEC 21320-1 validated in CI. Node ≥22, zero extra dependencies.
Digital forensic investigation using Kali Linux on Raspberry Pi to analyze malicious USB payloads (ZIP bombs).
MCP server on the zipnative ZIP engine — 13 tools for AI agents: inspect, list and verify without extracting, extract with zip-slip / zip-bomb / symlink guards, create deterministic reproducible archives, modify without recompression. MCP 2026-07-28 + legacy, stdio & HTTP, sandboxed, no network path, ISO/IEC 21320-1 validated in CI. Node ≥22.
To associate your repository with the zip-bomb topic, visit your repo's landing page and select "manage topics."