PortSwigger / java-deserialization-scannerLinks
All-in-one plugin for Burp Suite for the detection and the exploitation of Java deserialization vulnerabilities
☆27Updated 3 years ago
Alternatives and similar repositories for java-deserialization-scanner
Users that are interested in java-deserialization-scanner are comparing it to the libraries listed below
Sorting:
- YSOSERIAL Integration with burp suite☆41Updated 3 years ago
- ☆43Updated 5 years ago
- Burp Suite extension to passively scan for applications revealing server error messages☆66Updated last year
- A Burp extension to show the Collaborator client in a tab☆36Updated 2 years ago
- The Web Audit Search Engine - Index and Search HTTP Requests and Responses in Web Application Audits with ElasticSearch☆23Updated 6 years ago
- A server vulnerable to XXE that can be used to test payloads using the xxer tool.☆26Updated 7 years ago
- siberas JMX exploitation toolkit☆130Updated 2 years ago
- Full TTY reverse shell over SSH☆58Updated 5 years ago
- BURP extension to record every HTTP request send via BURP and create an audit trail log of an assessment.☆65Updated 2 months ago
- ☆104Updated 5 years ago
- Burp extension☆58Updated 7 years ago
- ☆108Updated 3 years ago
- HTML5 WebSocket message fuzzer☆146Updated 6 years ago
- A Burp extension for generic extraction and reuse of data within HTTP requests and responses.☆94Updated 3 years ago
- A malicious LDAP server for JNDI injection attacks☆75Updated 8 months ago
- Hacking Artifactory with server side template injection☆51Updated 5 years ago
- JWT Fuzzer for BurpSuite. Adds an Intruder hook for on-the-fly JWT fuzzing.☆100Updated 5 years ago
- Extension providing view with filtering capabilities for both complete and incomplete requests from all burp tools.☆25Updated 3 years ago
- Java serialization brute force attack tool.☆123Updated 7 years ago
- Burp Suite extension for JAX-RS☆65Updated 8 years ago
- Burp extension to filter JSON on the fly with JQ queries in the HTTP message viewer.☆47Updated 4 years ago
- All about CVE-2018-14667; From what it is to how to successfully exploit it.☆50Updated 6 years ago
- Burp extension to passively scan for applications revealing software version numbers☆32Updated last year
- A lab for playing with NoSQL Injection☆133Updated 4 years ago
- Fuzzing for LFI using Burpsuite☆63Updated 8 years ago
- A Burp Extension designed to identify argument injection vulnerabilities.☆121Updated 6 years ago
- Proof of concept for CVE-2020-5902☆72Updated 5 years ago
- Repository to hold materials for DefCon_RESTing presentation by Dinis, Abe and Alvaro☆53Updated 11 years ago
- Simple Server Side Request Forgery services enumeration tool.☆55Updated 6 years ago
- A simple Burp extension for scanning stuffs in CTF☆31Updated 7 years ago