Java-Chains / papersLinks
Topic: The Swiss Army Knife of Java Exploitation
☆21Updated 9 months ago
Alternatives and similar repositories for papers
Users that are interested in papers are comparing it to the libraries listed below
Sorting:
- Spring-Kafka-Deserialization-Remote-Code-Execution☆31Updated 2 years ago
- portreuse reuseport 端口复用☆61Updated 2 years ago
- 7bits安全团队-《Java安全-记一次实战使用memoryshell》代码样例☆19Updated 3 years ago
- Windows & linux Echo to file command converter☆25Updated 4 years ago
- ☆22Updated 9 months ago
- My security presentations☆28Updated 2 years ago
- 在spring-aop中新发现的反序列化gadget-chain☆52Updated 11 months ago
- 针对kubernetes中的RBAC可能被攻击检测工具。Detection tool for possible attacks on RBAC in kubernetes.☆26Updated last year
- ActiveMQ RCE (CVE-2023-46604) 回显利用工具☆39Updated last year
- ☆16Updated 3 years ago
- 多组件客户端☆74Updated 7 months ago
- 一个基于DNS隧道的简单C2☆59Updated 3 years ago
- 轻便的恶意反代☆48Updated 4 years ago
- CVE-2020-4464 / CVE-2020-4450☆33Updated 4 years ago
- Yapi mock script RCE another version. Webshell way. 另一种 Webshell 方式的 Yapi 命令执行的方法 相比于其他的利用方式 更加微操和可控 影响更 小☆66Updated last year
- 解析netsh抓取的etl文件来定位windows主机上存在ICMP通信的进程与文件的小工具☆31Updated 3 years ago
- CrossC2通信协议API实现☆84Updated 4 years ago
- c/s网络准入平台☆20Updated 3 years ago
- ☆34Updated 3 years ago
- Hessian UTF-8 Overlong Encoding☆19Updated last year
- Automatically scan jar packages by using ast to find fastjson gadgets. In particular, this project is limited to mining Gadgets that may …☆49Updated 3 years ago
- ☆94Updated 3 years ago
- docker运行cs4.7server端☆39Updated 3 years ago
- CVE-2023-36899漏洞的复现环境和工具,针对ASP.NET框架中的无cookie会话身份验证绕过。☆32Updated 2 years ago
- 窃取当前用户的ssh,sudo密码☆69Updated 2 years ago
- cve-2022-34169 延伸出的Jdk Xalan的payload自动生成工具,可根据不同的Jdk生成出其所对应的xslt文件☆92Updated 2 years ago
- 利用EFSRPC协议批量探测出网☆66Updated 2 years ago
- YApi boolean-based injection exploit.☆58Updated 2 years ago
- Collect JSP webshell of various implementation methods. 收集JSP Webshell的各种姿势☆15Updated 4 years ago
- NoPacScan is a CVE-2021-42287/CVE-2021-42278 Scanner,it scan for more domain controllers than other script☆88Updated 3 years ago