Macr0phag3 / xsleaks-wiki-zh_CN
xsleaks-wiki 中文版
☆15Updated 2 years ago
Alternatives and similar repositories for xsleaks-wiki-zh_CN:
Users that are interested in xsleaks-wiki-zh_CN are comparing it to the libraries listed below
- JDBC Attack Tricks☆138Updated last year
- 备份下比赛附件☆22Updated 2 years ago
- A vul-finder for loading CPG and automated finding vul-call-chains☆37Updated 4 months ago
- 向导式CTF题目环境模板生成器☆32Updated last year
- [fastjson 1.2.80] CVE-2022-25845 aspectj fileread & groovy remote classload☆91Updated 2 years ago
- ☆55Updated last year
- CVE-2022-25845(fastjson1.2.80) exploit in Spring Env!☆81Updated 3 months ago
- 之前方便自己研究RASP原理和绕过时顺手写的,用于快速启动和重置RASP环境☆55Updated 4 months ago
- 《Spring漏洞研究》☆44Updated 2 years ago
- EndpointSearch 是一个探测云服务端点的扫描器。Endpoint Search is a sophisticated reconnaissance utility designed to discreetly identify and enumerate end…☆73Updated 3 months ago
- Java 内存马生成插件☆50Updated last year
- 当死去的记忆突然开始攻击我,我终于想起了我还写过一款十分十分垃圾的 rasp 靶场。☆77Updated 2 years ago
- Kunlun-M 的GUI程序☆51Updated 2 years ago
- Scanner platform based on Kubernetes and Argo-Workflow 基于k8s和argo工作流的扫描器☆109Updated last year
- CodeQL 寻找 JNDI利用 Lookup接口☆163Updated 2 years ago
- 基于 Json 、自定义Go脚本的多协程验证扫描器,用于快速验证目标是否存在该漏洞或深层次利用。☆38Updated 3 months ago
- A heapdump leaks Shiro key causing RCE vulnerability environment.☆53Updated 9 months ago
- 收录go语言编写的项目、框架和组件出现的cve,或者一些相关的利用方式的文章☆37Updated 2 years ago
- pyyso is a Python package that generate java serialized poc. Including CommonsCollections1-7, JDK7u21, JDK8u20, ldap for jndi, shiro-550,…☆50Updated 2 years ago
- A Go library for generating Java deserialization payloads.☆155Updated 5 months ago
- Web Cache Poisoning Vulnerability Scanner☆35Updated last month
- A Java Route Collection Tool☆90Updated 6 months ago
- 2023白帽补天大会部分代码☆121Updated last year
- evil-mysql-server is a malicious database written to target jdbc deserialization vulnerabilities and requires ysoserial.☆87Updated 2 years ago
- Apache Dubbo Hessian2 CVE-2021-43297 demo☆46Updated 3 years ago
- The purpose of this script is to bypass disablefund, provide some useful information, and dig the hook function of PHP extension.☆14Updated 3 years ago
- 是一些比赛中的好题,加上自己出的一些。。。☆44Updated 2 years ago
- A malicious LDAP server for JNDI injection attacks☆51Updated last year
- Some ReadObject Sink With JDBC☆202Updated 9 months ago
- 在原有yso基础上实现依赖分离,内存马注入等功能。A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆68Updated 3 years ago