STMCyber / RmiTaste
RmiTaste allows security professionals to detect, enumerate, interact and exploit RMI services by calling remote methods with gadgets from ysoserial.
☆106Updated 4 years ago
Related projects ⓘ
Alternatives and complementary repositories for RmiTaste
- Exploitation toolkit for RichFaces☆102Updated last year
- Gopher Tomcat Deployer☆47Updated 6 years ago
- A Proof of concept for CVE-2021-27850 affecting Apache Tapestry and leading to unauthencticated remote code execution.☆5Updated last year
- Example Vulnerable .NET HTTP Remoting☆75Updated 5 years ago
- Sample Spring Boot App Demonstrating RCE via Exposed env Actuator and H2 Database☆104Updated 4 years ago
- ☆116Updated 4 years ago
- MOGWAI LABS JMX exploitation toolkit☆197Updated last year
- PoC for CVE-2020-6207 (Missing Authentication Check in SAP Solution Manager)☆81Updated 3 years ago
- Template Injection in Email Templates leads to code execution on Jira Service Management Server☆48Updated 3 years ago
- ZAP/Burp plugin that generate script to reproduce a specific HTTP request (Intended for fuzzing or scripted attacks)☆29Updated 2 years ago
- A malicious LDAP server for JNDI injection attacks☆72Updated last week
- Citrix ADC Vulns☆86Updated 4 years ago
- Burp extension to filter JSON on the fly with JQ queries in the HTTP message viewer.☆45Updated 3 years ago
- ☆65Updated 3 years ago
- Utility for creating ZipSlip archives☆67Updated last year
- Here you can get full exploit for SAP NetWeaver AS JAVA☆74Updated 6 years ago
- Exploit for WebSocket Vulnerability in Apache Tomcat☆165Updated 4 years ago
- Authenticated SSRF in Grafana☆77Updated 4 months ago
- Atlassian JIRA Template injection vulnerability RCE☆93Updated 5 years ago
- Compiled dataset of Java deserialization CVEs☆60Updated 4 years ago
- 用Kali 2.0复现Apache Tomcat Session反序列化代码执行漏洞☆52Updated 4 years ago
- Some private tools i decided to release for public.☆49Updated 8 months ago
- Intentionally Vulnerable to Spring4Shell☆51Updated 2 years ago
- com_media allowed paths that are not intended for image uploads to RCE☆71Updated 3 years ago
- ☆44Updated 2 years ago
- Exploitation code for CVE-2021-40539☆46Updated 3 years ago
- PoC for CVE-2020-6287, CVE-2020-6286 (SAP RECON vulnerability)☆215Updated 4 years ago
- poison and relay NTLM credentials☆173Updated 5 years ago
- RCE for Pega Infinity >= 8.2.1, Pega Infinity <= 8.5.2☆60Updated 3 years ago