SecurityCrux / secruxLinks
SeCrux is a true enterprise-grade security management platform that seamlessly integrates with any form of SAST and SCA scanners, empowering them with AI capabilities. Its built-in enrichment features and precise SCA identification capabilities significantly enhance security management efficiency.
☆199Updated this week
Alternatives and similar repositories for secrux
Users that are interested in secrux are comparing it to the libraries listed below
Sorting:
- 利用代理驱动绕过JDBC Attack检测☆143Updated 7 months ago
- Java bytecode line number restoration tool☆132Updated 5 months ago
- 用于快速启动tabby 分析漏洞或者gadget的环境☆95Updated 6 months ago
- 之前方便自己研究RASP原理和绕过时顺手写的,用于快速启动和重置RASP环境☆71Updated last year
- A lightweight reverse proxy server that converts TLS traffic to TCP, allowing secure communication between clients and upstream servers.☆79Updated last year
- 基于Java开发的代码字符串搜索工具,用于辅助快速代码审计,筛选危险方法名称搜索代码中可能存在的漏洞☆37Updated 4 months ago
- 在xxe中使用smb外带多行内容☆101Updated 3 months ago
- 如何将Java反序列化Payload极致缩小☆69Updated 4 years ago
- 一个基于 Vineflower 引擎的多线程 Java 批量反编译工具,支持快速处理大量的 class 文件和 JAR 文件。☆58Updated 9 months ago
- Java漏洞调试分析集合☆91Updated last year
- 检测查杀java内存马☆126Updated 2 years ago
- 抽离出 utf-8-overlong-encoding 的序列化逻辑,实现 2 3 字节加密序列化数组☆139Updated last year
- 一个简单的批量反编译jar包的小脚本☆45Updated 3 years ago
- 检测域内常见一把梭漏洞,包括:NoPac、ZeroLogon、CVE-2022-26923、PrintNightMare☆79Updated 2 years ago
- 用Go+Fyne开发的,展示JAVA序列化流以及集成一键插入脏数据,UTF过长编码绕WAF(Utf OverLoad Encoding),修改类SerializeVersionUID功能的图形化工具。☆125Updated last year
- JDBC Attack Tricks☆154Updated 2 years ago
- autoxss Million dollars Google AND Firefox plugin☆49Updated 10 months ago
- 使用 agent 实现反序列化 utf8 overlong☆83Updated last year
- 基于污点分析和模拟栈帧技术的JSP Webshell检测☆48Updated 4 months ago
- 如果反序列化过程中使用resolveClass拉黑了TemplatesImpl如何绕过☆53Updated 2 years ago
- 基于W01fh4cker大佬的LearnJavaMemshellFromZero从零掌握java内存马的复现重组版本。☆92Updated 7 months ago
- ☆79Updated last year
- JSHunter-一款针对于前端的未授权访问扫描工具☆84Updated 9 months ago
- java实现反序列化建立socket连接☆60Updated last year
- 在Java安全学习过程中的笔记和代码☆76Updated last week
- 🚀 AI-Powered Red Team & Pentest Toolkit | 赋能红队与渗透测试的 AI 工具集☆72Updated last month
- CodeVulnScan 是一款基于正则表达式的代码安全审计工具,专为红队成员快速定位sink设计。它能够快速扫描目标代码库,定位潜在的漏洞 Sink 点,提升代码审计效率。☆61Updated 5 months ago
- 强化学习 + 端口扫描☆128Updated 11 months ago
- Next Generation Java WebShell Manager☆71Updated last week
- 多组件客户端☆74Updated 9 months ago