Phelaine / SinkFinder
闭源系统半自动漏洞挖掘工具,针对 jar/war/zip 进行静态代码分析,增加 LLM 大模型能力验证路径可达性,LLM 根据上下文代码环境给出该路径可信分数
☆299Updated 2 weeks ago
Alternatives and similar repositories for SinkFinder:
Users that are interested in SinkFinder are comparing it to the libraries listed below
- Java web路由内存分析工具☆425Updated last week
- Common Exploitation Techniques for Java RCE Vulnerabilities in Real-World Scenarios | 实战场景较通用的 Java Rce 相关漏洞的利用方式☆477Updated 2 months ago
- 自动反编译闭源应用,创建codeql数据库☆297Updated 2 years ago
- ☆494Updated 2 years ago
- JavaWeb 内存马开聚会 🎉☆415Updated this week
- A neo4j procedure for tabby☆116Updated 6 months ago
- JDBC Connection URL Attack☆393Updated 3 years ago
- Java Js Engine Payloads All in one☆270Updated last year
- CTF-Java-Gadget专注于收集CTF中Java赛题的反序列化片段☆207Updated this week
- 不那么一样的 Java Agent 内存马☆258Updated last year
- ☆201Updated 3 months ago
- 笔记☆9Updated 2 weeks ago
- 记录学习codeql的过程☆367Updated last year
- Some ReadObject Sink With JDBC☆192Updated 7 months ago
- 项目监控工具 以及 Codeql 自动运行☆309Updated last year
- ☆303Updated 4 months ago
- javaDeserializeLabs☆63Updated last year
- 多功能 java agent 内存马☆394Updated last year
- java-web 自动化鉴权绕过☆253Updated 2 months ago
- 这是一个基于先知社区知识构建的向量知识库☆195Updated 4 months ago
- GitHub项目监控 && CodeQL自动扫描 (GitHub project monitoring && CodeQL automatic analysis)☆406Updated this week
- 收集内存马打入方式☆498Updated 2 years ago
- 利用链、漏洞检测工具☆368Updated 4 months ago
- 个人使用CodeQL编写的一些规则☆175Updated 2 years ago
- 一款支持自定义的 Java 回显载荷生成工具|A customizable Java echo payload generation tool.☆402Updated 4 months ago
- 云原生安全资料库☆104Updated last week
- ☆218Updated 9 months ago
- AutoBypass403-BurpSuite 插件二开重构,优化执行逻辑☆254Updated 2 months ago
- JNDI 注入利用工具, 支持 RMI, LDAP 和 LDAPS 协议, 包含多种高版本 JDK 绕过方式 | A JNDI injection exploit tool that supports RMI, LDAP and LDAPS protocols, inclu…☆348Updated last month
- 基于 jdwp-shellifier 的进阶JDWP漏洞利用脚本(动态执行Java/Js代码并获得回显)☆254Updated this week