JLLeitschuh / security-research
Public disclosure channel for security vulnerabilities
☆16Updated last year
Alternatives and similar repositories for security-research:
Users that are interested in security-research are comparing it to the libraries listed below
- My CodeQL queries collection☆96Updated last year
- Ready to use docker image for CodeQL☆88Updated last year
- Run CodeQL queries at scale using Multi-Repository Variant Analysis (MRVA)☆53Updated 9 months ago
- Several XStream gadgets ported from ysoserial☆32Updated 3 years ago
- CodeQL model generation for Go.☆17Updated 3 years ago
- Intentionally Vulnerable to Spring4Shell☆51Updated 2 years ago
- RmiTaste allows security professionals to detect, enumerate, interact and exploit RMI services by calling remote methods with gadgets fro…☆106Updated 4 years ago
- Custom / Experimental CodeQL queries☆37Updated 2 years ago
- Sample Spring Boot App Demonstrating RCE via Exposed env Actuator and H2 Database☆103Updated 4 years ago
- Utility for creating ZipSlip archives☆68Updated last year
- ☆34Updated 2 years ago
- Sample Spring application to Demonstrate the Gateway Actuator☆48Updated 2 years ago
- CodeQL database manager☆48Updated 11 months ago
- Proof of Concepts for unsafe deserialization in Ruby☆17Updated 3 months ago
- Gopher Tomcat Deployer☆47Updated 6 years ago
- A project demonstrating an app that is vulnerable to Spring Security authorization bypass CVE-2022-31692☆36Updated 2 years ago
- Compiled dataset of Java deserialization CVEs☆61Updated 4 years ago
- Collection of python helper API's for interacting with LGTM.com in ways the official API doesn't support.☆23Updated 2 years ago
- Collection of community-driven CodeQL query, library and extension packs☆123Updated this week
- ☆70Updated 2 years ago
- A fingerprint generation helper for nuclei network templates☆72Updated 2 years ago
- GH CLI CodeQL Scan Extension☆19Updated 3 months ago
- tetctf2020_amf_writeups☆23Updated 4 years ago
- A fast port scanner written in go with a focus on reliability and simplicity.☆16Updated 2 months ago
- An example repository that demonstrates how the build custom CodeQL bundles that include query customizations through the `Customizations…☆25Updated 2 years ago
- This tool tries to find interesting stuff inside static files; mainly JavaScript and JSON files.☆54Updated last year
- *Unofficial* lgtm.com CLI — Use at your own risk. Also don't add more than 3K projects to "My projects" list.☆13Updated 2 years ago
- Burp plugin for the 1Password session protocol for use by security researchers.☆59Updated last month
- Container Excape PoC for CVE-2022-0847 "DirtyPipe"☆77Updated 2 years ago
- ☆59Updated 2 years ago