BishopFox / ysoserial-bf
A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.
☆25Updated 9 months ago
Related projects ⓘ
Alternatives and complementary repositories for ysoserial-bf
- Proof of Concept for Path Traversal in Apache Struts ("CVE-2023-50164")☆59Updated 11 months ago
- Utility for creating ZipSlip archives☆67Updated last year
- CVE-2023-21554 Windows MessageQueuing PoC,分析见 https://www.zoemurmure.top/posts/cve_2023_21554/☆54Updated last year
- Automatic Tools For Metabase Exploit Known As CVE-2023-38646☆28Updated last year
- Exploit for CVE-2024-20767 - Adobe ColdFusion☆33Updated 7 months ago
- Apache commons text - CVE-2022-42889 Text4Shell proof of concept exploit.☆54Updated 10 months ago
- ☆24Updated 2 years ago
- Nuclei template to detect Apache servers vulnerable to CVE-2024-38473☆26Updated 2 months ago
- ☆24Updated 5 months ago
- Scalpel is a Burp extension for intercepting and rewriting HTTP traffic, either on the fly or in the Repeater using Python 3 scripts.☆52Updated 5 months ago
- tool that generates bypasses for open redirects☆48Updated 2 years ago
- A project for fuzzing HTTP/1.1 CL.0 Request Smuggling Attack Vectors☆85Updated 9 months ago
- Arbitrary File Disclosure Vulnerability in Icinga Web 2 <2.8.6, <2.9.6, <2.10☆14Updated last year
- Ruby-SAML / GitLab Authentication Bypass (CVE-2024-45409) exploit☆73Updated last month
- Just learning around new stuff mostly Red Teaming and such but will try to see if I can update or simplify them more, nothing too exotic …☆36Updated 2 years ago
- Fortinet FortiClient EMS SQL Injection☆43Updated 8 months ago
- CVE-2023-34362: MOVEit Transfer Unauthenticated RCE☆63Updated 7 months ago
- cve-2022-42889 Text4Shell CVE-2022-42889 affects Apache Commons Text versions 1.5 through 1.9. It has been patched as of Commons Text ver…☆37Updated 2 years ago
- Burp Suite's extension to scan and crawl Single Page Applications☆99Updated last year
- ☆30Updated last year
- PoC repository for CVE-2023-29007☆32Updated last year
- Atlassian Companion RCE Vulnerability Proof of Concept☆25Updated 11 months ago
- Ivanti EPM SQL Injection Remote Code Execution Vulnerability☆20Updated 5 months ago
- A BurpSuite extension to deploy an OpenVPN config file to DigitalOcean and set up a SOCKS proxy to route traffic through it☆48Updated 8 months ago
- The purpose of this repo is to share my research☆14Updated 11 months ago
- Proof of conept to exploit vulnerable proxycommand configurations on ssh clients☆18Updated 11 months ago
- Authentication Bypass in GoAnywhere MFT☆64Updated 9 months ago
- Perform TE.CL HTTP Request Smuggling attacks by crafting HTTP Request automatically.☆67Updated 2 years ago