Jinone / toolsLinks
bugbounty tools
☆18Updated 2 years ago
Alternatives and similar repositories for tools
Users that are interested in tools are comparing it to the libraries listed below
Sorting:
- Burpsuite Plugin For AES Crack☆38Updated 5 years ago
- POC for leaking java version through file and ftp protocols☆24Updated 5 years ago
- 几条关于CVE-2020-15148(yii2反序列化)的绕过☆75Updated 5 years ago
- some struts tag , attributes which out of the range will call SetDynamicAttribute() function, it will cause ONGL expression execute☆70Updated 4 years ago
- Spring Boot Actuator + Spring Cloud Vul Env☆19Updated 5 years ago
- A fastjson payload generator☆58Updated 5 years ago
- Plugin For BurpSuite (Pentester)☆36Updated 2 years ago
- exploit Apache Flink Web Dashboard unauth rce on right way by python2 scripts☆90Updated 6 years ago
- ☆58Updated 5 years ago
- HackerOne Staffs☆29Updated 5 years ago
- fastjson-1.2.61-RCE☆33Updated 6 years ago
- ☆73Updated 3 years ago
- ☆19Updated 4 years ago
- CVE-2020-8840:FasterXML/jackson-databind 远程代码执行漏洞☆36Updated 5 years ago
- burpsuite 插件对GP所有参数(过滤特殊参数)一键自动添加xss sql payload 进行fuzz☆63Updated 6 years ago
- https://github.com/GrrrDog/Java-Deserialization-Cheat-Sheet☆51Updated 4 years ago
- autoType enable☆36Updated 6 years ago
- A database of options to use when pen testing an application. Sample XSS, SQLi and much more. It's been gathered over time. It's not perf…☆16Updated 5 years ago
- CVE-2020-36179~82 Jackson-databind SSRF&RCE☆81Updated 4 years ago
- Apache Tomcat + MongoDB Remote Code Execution☆113Updated 4 years ago
- CVE-2020-26259: XStream is vulnerable to an Arbitrary File Deletion on the local host when unmarshalling as long as the executing process…☆25Updated 4 years ago
- kibana < 6.6.0 未授权远程代码命令执行 (Need Timelion And Canvas),CVE-2019-7609☆89Updated 6 years ago
- ☆69Updated 5 years ago
- CVE-2019-2890 WebLogic 反序列化RCE漏洞☆44Updated 5 years ago
- shiro反序列化检测(只是个玩具23333)☆11Updated last year
- Java After-Deserialization Attack☆79Updated 4 years ago
- Tomcat基于动态注册Filter的无文件Webshell☆26Updated 5 years ago
- Basic code for creating the Alibaba FastJson + Spring gadget chain, as used to exploit Apache Dubbo in CVE-2019-17564 - more information …☆16Updated 2 years ago
- Shiro_721 exp 纯手工实现Padding Oracle整个过程☆67Updated 5 years ago
- Proof of concept for Weblogic CVE-2020-2883☆15Updated 5 years ago