用于存储公众号文章的 PDF 版本
☆104May 20, 2024Updated last year
Alternatives and similar repositories for Electron-Security
Users that are interested in Electron-Security are comparing it to the libraries listed below
Sorting:
- 哥斯拉 Suo5 一款高性能 HTTP 代理隧道工具☆15Sep 24, 2023Updated 2 years ago
- FastJson全版本Docker漏洞环境(涵盖1.2.47/1.2.68/1.2.80等版本),主要包括JNDI注入及高版本绕过、waf绕过、文件读写、原生反序列化、利用链探测绕过、不出网利用等。从黑盒的角度覆盖FastJson深入利用☆1,182Jul 12, 2024Updated last year
- Common Exploitation Techniques for Java RCE Vulnerabilities in Real-World Scenarios | 实战场景较通用的 Java Rce 相关漏洞的利用方式☆545Mar 6, 2025Updated 11 months ago
- 【两万字原创】零基础学fastjson漏洞(提高篇),公众号:追梦信安☆211Dec 7, 2023Updated 2 years ago
- Java 代码审计 idea 插件☆26Mar 8, 2025Updated 11 months ago
- 一款支持自定义的 Java 回显载荷生成工具|A customizable Java echo payload generation tool.☆461Jan 12, 2025Updated last year
- 添加计划任务方法集合☆309Aug 6, 2023Updated 2 years ago
- EndpointSearch 是一个探测云服务端点的扫描器。Endpoint Search is a sophisticated reconnaissance utility designed to discreetly identify and enumerate end…☆79Nov 8, 2024Updated last year
- 记录一些代码审计过的源码☆182Feb 26, 2025Updated last year
- 内存马查杀工具,尤其针对Agent型,原理是dump出JVM当前的class并进行字节码分析,并加入自动修复的功能☆179May 10, 2023Updated 2 years ago
- Java XMLDecoder payload generator☆16Jul 27, 2021Updated 4 years ago
- Expolit Lists. 相关集合💥💥💥 ;) 用友NC反序列化/ CTF/ Java Deserialization/Shiro Vulns/ CNVD or CVE Vulns/ Log4j2/ Hikvision-decrypter...✨✨✨☆71Oct 12, 2025Updated 4 months ago
- 一款用于快速导出URL、Domain和IP的小工具☆233Sep 2, 2024Updated last year
- 一款高性能 HTTP 内存代理 | 哥斯拉插件 | readteam | 红队 | 内存马 | Suo5 | Godzilla | 正向代理☆288Aug 8, 2023Updated 2 years ago
- AK资源管理工具,阿里云/腾讯云/华为云/AWS/UCLOUD/京东云/百度云/七牛云存储/火山引擎 AccessKey AccessKeySecret,利用AK获取资源信息和操作资源,ECS/CVM/E2/UHOST/ECI/BCC执行命令,OSS/COS/S3/BOS…☆779Feb 13, 2025Updated last year
- A list for Spring Security☆128Jan 16, 2024Updated 2 years ago
- 检测域内常见一把梭漏洞,包括:NoPac、ZeroLogon、CVE-2022-26923、PrintNightMare☆79Oct 23, 2023Updated 2 years ago
- 闭源系统半自动漏洞挖掘工具,针对 jar/war/zip 进行静态代码分析,输出从source到sink的可达路径。LLM将验证路径可达性,并根据上下文给出该路径可信分数☆502Jan 12, 2026Updated last month
- ysoserial for 1nhann☆11Sep 26, 2022Updated 3 years ago
- OA系统解密小工具☆47Dec 10, 2023Updated 2 years ago
- CodeQLpy是一款基于CodeQL实现的半自动化代码审计工具,目前仅支持java语言。实现从源码反编译,数据库生成,脆弱性发现的全过程,可以辅助代码审计人员快速定位源码可能存在的漏洞。☆844Jul 6, 2023Updated 2 years ago
- fofa client in Go☆47Apr 30, 2025Updated 10 months ago
- JDBC Connection URL Attack☆440Sep 10, 2021Updated 4 years ago
- Entity-Relation Diagram Assisted Hacking Tool☆58Aug 7, 2024Updated last year
- Java漏洞调试分析集合☆91Mar 11, 2024Updated last year
- 利用代理驱动绕过JDBC Attack检测☆143Jun 15, 2025Updated 8 months ago
- 一款Java内存马生成、测试工具,搭配@ax1sX的MemShell食用。☆261Feb 15, 2026Updated 2 weeks ago
- ScopeSentry tool scans the source code☆219Jan 26, 2026Updated last month
- 🔍 CodeAuditAssistant - IDEA代码审计插件(公测中) ⚡ 精准追踪复杂调用链 | 🚀 毫秒级方法搜索 | 🔥 内置高危漏洞检测 原生集成 | 反编译/路径分析 | 内存优化 | 安全审计利器 🔍 Co…☆773Aug 3, 2025Updated 7 months ago
- 企业微信、企业飞书接口调用工具。☆172Apr 8, 2025Updated 10 months ago
- Burpsuite - Js Route Scan 正则匹配获取响应中的路由进行被动探测与递归目录探测的burp插件☆360Jun 7, 2024Updated last year
- php decrypt environment for study☆17Jan 10, 2024Updated 2 years ago
- ☆11May 25, 2024Updated last year
- shiro加fastjson环境☆146Oct 4, 2022Updated 3 years ago
- 个人部分知识总结☆150Oct 26, 2025Updated 4 months ago
- 80+ Gadgets(30 More than ysoserial). JNDI-Injection-Exploit-Plus is a tool for generating workable JNDI links and provide background serv…☆866Jun 24, 2024Updated last year
- 之前方便自己研究RASP原理和绕过时顺手写的,用于快速启动和重置RASP环境☆71Oct 13, 2024Updated last year
- 给woodpecker框架量身定制的ysoserial☆608Oct 26, 2022Updated 3 years ago
- 亿赛通电子文档安全管理系统XStream反序列化漏洞任意文件上传利用☆120Aug 9, 2024Updated last year