BishopFox / ysoserial-bf
A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.
☆25Updated last year
Alternatives and similar repositories for ysoserial-bf:
Users that are interested in ysoserial-bf are comparing it to the libraries listed below
- Utility for creating ZipSlip archives☆69Updated 2 years ago
- Proof of Concept for Path Traversal in Apache Struts ("CVE-2023-50164")☆57Updated last year
- Exploit for CVE-2024-20767 - Adobe ColdFusion☆33Updated 2 months ago
- Golden collection of weak passwords☆61Updated 2 months ago
- List of some AD tools I frequently use☆46Updated 2 weeks ago
- PoC repository for CVE-2023-29007☆33Updated last year
- Proof of conept to exploit vulnerable proxycommand configurations on ssh clients☆18Updated last year
- ☆45Updated 2 years ago
- Exploit for Arbitrary File Move vulnerability in ZoneAlarm AV☆26Updated 2 years ago
- CVE-2023-34362: MOVEit Transfer Unauthenticated RCE☆62Updated 10 months ago
- Apache commons text - CVE-2022-42889 Text4Shell proof of concept exploit.☆57Updated last year
- Arbitrary File Disclosure Vulnerability in Icinga Web 2 <2.8.6, <2.9.6, <2.10☆13Updated last year
- cve-2022-42889 Text4Shell CVE-2022-42889 affects Apache Commons Text versions 1.5 through 1.9. It has been patched as of Commons Text ver…☆39Updated 2 years ago
- A BurpSuite extension to deploy an OpenVPN config file to DigitalOcean and set up a SOCKS proxy to route traffic through it☆48Updated 11 months ago
- This repository offers insights and a proof-of-concept tool to exploit two significant deserialization vulnerabilities in Inductive Autom…☆45Updated last year
- Exploits targeting vBulletin.☆76Updated last year
- tool that generates bypasses for open redirects☆52Updated 2 years ago
- Java archive implant toolkit.☆60Updated last week
- This repository serves as a curated resource for OffSec's OSEP (PEN-300) certification preparation, containing useful links, materials, a…☆14Updated 3 months ago
- .NET deserialization hunter☆76Updated 7 months ago
- A Simple CVE-2022-39299 PoC exploit generator to bypass authentication in SAML SSO Integrations using vulnerable versions of passport-sam…☆18Updated 2 years ago
- Exploit for CVE-2024-27198 - TeamCity Server☆32Updated 2 months ago
- Exploit for Microsoft SharePoint 2019☆14Updated last year
- CVE-2023-21554 Windows MessageQueuing PoC,分析见 https://www.zoemurmure.top/posts/cve_2023_21554/☆56Updated last year
- CVE-2021-34473 Microsoft Exchange Server Remote Code Execution Vulnerability☆36Updated 2 years ago
- Just some random small tools for dealing with asp.net Forms Authentication Cookies☆23Updated 3 years ago
- PoC for CVE-2022-23940☆10Updated 2 years ago
- CVE-2023-20198-RCE, support adding/deleting users and executing cli commands/system commands.☆38Updated 9 months ago
- ☆52Updated last year