A-D-Team / grafanaExpLinks
A exploit tool for Grafana Unauthorized arbitrary file reading vulnerability (CVE-2021-43798), it can burst plugins / extract secret_key / decrypt data_source info automatic.
☆262Updated last month
Alternatives and similar repositories for grafanaExp
Users that are interested in grafanaExp are comparing it to the libraries listed below
Sorting:
- 个人整理的一些域渗透Tricks,可能有一些错误。☆255Updated 4 years ago
- fastjson不出网利用、c3p0☆252Updated 3 years ago
- 域渗透脑图中文翻译版☆278Updated 3 years ago
- 命令执行不回显但DNS协议出网的命令回显场景解决方案☆274Updated 2 years ago
- ☆224Updated 3 years ago
- 一个LDAP请求监听器,摆脱dnslog平台☆290Updated 2 years ago
- Redis-Attack By Replication (通过主从复制攻击Redis)☆341Updated 2 years ago
- fastjson 被动扫描、不出网payload生成☆370Updated 3 years ago
- ☆340Updated 3 years ago
- BCEL encode/decode manager for fastjson payloads☆149Updated 3 years ago
- ☆224Updated last month
- CVE-2022-22947☆220Updated 3 years ago
- 一个可以伪装上线Cobaltstrike的脚本☆136Updated 2 years ago
- ☆283Updated 3 years ago
- 通过正则搜索、批量反编译特定Jar包中的class名称☆311Updated 3 years ago
- 可在Windows下执行系统命令的Redis模块,可用于Redis主从复制攻击。☆263Updated 2 years ago
- 下架☆141Updated 3 years ago
- CobaltStrike4.4 一键部署脚本 随机生成密码、key、端口号、证书等,解决cs4.x无法运行在Linux上报错问题 灰常银杏化设计☆286Updated 3 years ago
- 适用于weblogic和Tomcat的无文件的内存马(memshell)☆266Updated 3 years ago
- JCE - JSP/JPSX CodeEncode - 用 于 Webshell 逃避静态查杀的辅助脚本☆258Updated 3 years ago
- 基于向日葵RCE的本地权限提升,无需指定端口☆211Updated 3 years ago
- Armor 浏览器反蜜罐插件 honeypot☆180Updated 4 years ago
- Shiro-550 不依赖CC链利用工具☆450Updated last year
- 一款通过污点追踪发现Jsp webshell的工具(A tool to find Jsp Webshell through stain tracking)☆177Updated 3 years ago
- 基于dbcp的fastjson rce 回显☆193Updated 4 years ago
- 域信息收集工具☆400Updated 2 years ago
- 改造BeichenDream/InjectJDBC加入shiro获取key和修改key功能☆279Updated last year
- CobaltStrike 上线自动权限维持插件☆184Updated 4 years ago
- Java内存马注入工具☆247Updated 2 years ago
- 帆软/致远密码解密工具☆360Updated 3 years ago