DSO-Lab / defvul
DSO-Lab 漏洞研究成果整理
☆82Updated 2 years ago
Alternatives and similar repositories for defvul:
Users that are interested in defvul are comparing it to the libraries listed below
- 用于WebLogic poc及exp测试的基础脚本,后续将集成各版本poc库☆93Updated 4 years ago
- 利用长亭xray高级版的回显Gadget重写的一个shiro反序列化利用工具。☆123Updated 4 years ago
- WebLogic EJBTaglibDescriptor XXE漏洞(CVE-2019-2888)☆58Updated 5 years ago
- ☆83Updated 3 years ago
- GUI Exploit Tool For RedTeam☆7Updated 3 years ago
- fastjson 1.2.68 版本 autotype bypass☆140Updated 2 years ago
- 🐸fingerprint detect framework 批量深度指纹识别框架☆119Updated 2 years ago
- This tool generates gopher link for exploiting SSRF and gaining RCE in redis with password.用于生成附带密码认证的gopher内容,用于SSRF等利用。☆112Updated 5 years ago
- Reference:https://www.w2n1ck.com/article/44/☆152Updated 4 years ago
- 整理的2019年厂商发布的漏洞预警公开POC集合,不足之处还希望多多补充,完善☆112Updated 5 years ago
- 通达OA RCE漏洞☆79Updated 4 years ago
- ☆61Updated 4 years ago
- WIP: Demo for Attacking Apereo CAS☆88Updated 4 years ago
- shiro反序列化批量ip快速检测脚本☆78Updated 4 years ago
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆101Updated 4 years ago
- goby对应的api☆36Updated 4 years ago
- xxl-job RESTful API RCE☆72Updated 3 years ago
- Apache Shiro 反序列化漏洞检测与利用工具 ,一键注入内存马☆139Updated 3 years ago
- CAS 硬编码 远程代码执行漏洞☆126Updated 3 years ago
- Spring Cloud SnakeYAML 反序列化一键注入cmdshell和reGeorg☆132Updated 4 years ago
- SpringBoot Actuator未授权自动化利用,支持信息泄漏/RCE☆232Updated 4 years ago
- 一款用于src资产信息收集的工具☆57Updated 4 years ago