Hardw01f / Vulnerability-goapp
Web application build Golang with Vulnerability
☆249Updated 2 years ago
Alternatives and similar repositories for Vulnerability-goapp:
Users that are interested in Vulnerability-goapp are comparing it to the libraries listed below
- ☆165Updated 2 years ago
- 用cel-go重现了长亭xray的poc检测功能的轮子☆296Updated 2 years ago
- 个人笔记☆216Updated 4 years ago
- IAST 灰盒扫描工具☆445Updated 2 years ago
- 一个利用ASM对字节码进行污点传播分析的静态代码审计应用(添加了大量代码注释,适合大家进行源码学习)。也加入了挖掘Fastjson反序列化gadget chains和SQLInject(JdbcTemplate、MyBatis、JPA、Hibernate、原生jdbc等)静…☆445Updated 3 years ago
- An awesome reverse engine for xray poc. | 一个自动化根据 xray poc 生成对应靶站的工具☆413Updated 2 years ago
- 利用链、漏洞检测工具☆367Updated 8 months ago
- ☆212Updated 7 months ago
- Security & Development☆265Updated last year
- Browser-based XSS finder☆205Updated 2 years ago
- codemillx is a tool for CodeQL, extract the comments in the code and generate codeql module. 强化Go开源项目安全检测(内含开源项目漏洞挖掘方法)☆204Updated 3 years ago
- 个人使用CodeQL编写的一些规则☆176Updated 3 years ago
- 一个由长亭自研,直观而可扩展的容器安全 SDK☆121Updated last year
- RMI 反序列化环境 一步步☆210Updated 4 years ago
- 项目监控工具 以及 Codeql 自动运行☆307Updated 2 years ago
- python 代码审计项目☆286Updated 3 years ago
- 更快速的进行Web应用指纹识别☆169Updated 5 years ago
- 内存马Demo合集 memshell demo for java / php / python☆410Updated 3 years ago
- 通用的指纹识别规则☆369Updated 2 years ago
- 基于AST的JSONP劫持漏洞自动化挖掘☆93Updated 4 years ago
- 一个简单的测绘引擎巴别塔☆157Updated 2 years ago
- 🧬 辅助生成 XRay YAML POC☆266Updated 2 years ago
- java memory web shell extracting tool☆434Updated 3 years ago
- rmi、jndi、ldap、jrmp、jmx、jms一些demo测试☆309Updated 2 years ago
- 一个针对防御 log4j2 CVE-2021-44228 漏洞的 RASP 工具。 A Runtime Application Self-Protection module specifically designed for log4j2 RCE (CVE-2021-442…☆123Updated 3 years ago
- 记录学习codeql的过程☆378Updated last year
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.优化了一些东西。☆215Updated 3 years ago
- 静态分 析及代码审计自动化相关资料收集☆293Updated 2 years ago
- 安全运营部署指南(wazuh部署指南)☆141Updated last year
- tomcat使用了自带session同步功能时,不安全的配置(没有使用EncryptInterceptor)导致存在的反序列化漏洞,通过精心构造的数据包, 可以对使用了tomcat自带session同步功能的服务器进行攻击。PS:这个不是CVE-2020-9484,9484…☆213Updated 4 years ago