BishopFox / ysoserial-bf
A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.
☆26Updated last year
Alternatives and similar repositories for ysoserial-bf:
Users that are interested in ysoserial-bf are comparing it to the libraries listed below
- Exploit for CVE-2024-20767 - Adobe ColdFusion☆34Updated 3 months ago
- Proof of Concept for Path Traversal in Apache Struts ("CVE-2023-50164")☆57Updated last year
- PoC repository for CVE-2023-29007☆32Updated last year
- Utility for creating ZipSlip archives☆71Updated 2 years ago
- Exploits targeting vBulletin.☆76Updated last year
- Arbitrary File Disclosure Vulnerability in Icinga Web 2 <2.8.6, <2.9.6, <2.10☆13Updated last year
- CVE-2023-21554 Windows MessageQueuing PoC,分析见 https://www.zoemurmure.top/posts/cve_2023_21554/☆56Updated last year
- Golden collection of weak passwords☆61Updated 3 months ago
- This repository offers insights and a proof-of-concept tool to exploit two significant deserialization vulnerabilities in Inductive Autom…☆43Updated last year
- ☆25Updated 4 months ago
- ☆25Updated this week
- CVE-2023-20198-RCE, support adding/deleting users and executing cli commands/system commands.☆39Updated 11 months ago
- [Confluence] CVE-2023-22527 realworld poc☆19Updated last year
- Proof of conept to exploit vulnerable proxycommand configurations on ssh clients☆18Updated last year
- Atlassian Companion RCE Vulnerability Proof of Concept☆25Updated last year
- Scalpel is a Burp extension for intercepting and rewriting HTTP traffic, either on the fly or in the Repeater using Python 3 scripts.☆57Updated 9 months ago
- A powerful AWS Cognito analysis and session hijacking toolkit designed for security researchers and penetration testers. CognitoHunter sp…☆20Updated 2 months ago
- Apache commons text - CVE-2022-42889 Text4Shell proof of concept exploit.☆55Updated last year
- RCE exploit for attack chain in "A Saga of Code Executions on Zimbra" post☆34Updated 3 years ago
- ☆28Updated last week
- This repository serves as a curated resource for OffSec's OSEP (PEN-300) certification preparation, containing useful links, materials, a…☆14Updated 4 months ago
- cve-2022-42889 Text4Shell CVE-2022-42889 affects Apache Commons Text versions 1.5 through 1.9. It has been patched as of Commons Text ver…☆39Updated 2 years ago
- Ruby-SAML / GitLab Authentication Bypass (CVE-2024-45409) exploit☆77Updated 5 months ago
- POC FortiOS SSL-VPN buffer overflow vulnerability☆27Updated last year
- Just some random small tools for dealing with asp.net Forms Authentication Cookies☆23Updated 3 years ago
- ☆13Updated 4 years ago
- CVE-2025-24016: RCE in Wazuh server! Remote Code Execution☆29Updated last month
- Nuclei template to detect Apache servers vulnerable to CVE-2024-38473☆27Updated 7 months ago
- CVE-2024-23897 jenkins-cli☆14Updated last year
- CVE-2023-34362: MOVEit Transfer Unauthenticated RCE☆63Updated last year