java反序列化漏洞笔记
☆23Apr 6, 2019Updated 6 years ago
Alternatives and similar repositories for JAVA-Serialize-vuln
Users that are interested in JAVA-Serialize-vuln are comparing it to the libraries listed below
Sorting:
- Java反序列化漏洞学习☆14Jul 1, 2021Updated 4 years ago
- CVE-2022-30525 Zyxel 防火墙命令注入漏洞 POC&EXPC☆12May 28, 2022Updated 3 years ago
- 就是一个练习RMI反序列化的最简单环境☆30Jan 8, 2022Updated 4 years ago
- 7bits安全团队-《Java安全-记一次实战使用memoryshell》代码样例☆19Nov 13, 2022Updated 3 years ago
- 基于BurpShiroPassiveScan修改增加了Xray回显链生成☆56Sep 6, 2022Updated 3 years ago
- Java Web shell project☆12Oct 22, 2021Updated 4 years ago
- 一款用Go实现的批量加载漏洞检测插件进行多线程扫描的框架。☆11Jan 20, 2024Updated 2 years ago
- 一个用于隐藏C2的、开箱即用的反向代理服务器。 旨在省去繁琐的配置Nginx服务的过程。☆45Dec 18, 2021Updated 4 years ago
- 自己零零散散研究以及收集的一些免杀技巧,以便为后续查阅,拓宽思路☆15Dec 11, 2019Updated 6 years ago
- 适用于目标命令执行不出网、无回显等场景☆13Oct 8, 2022Updated 3 years ago
- 获取域控权限方法枚举☆13May 8, 2022Updated 3 years ago
- JAVA Vul Code JAVA常见漏洞与防御代码示例☆10Sep 18, 2018Updated 7 years ago
- 这是由Rust实现的纯Socks5协议☆12May 11, 2024Updated last year
- ☆20Jan 8, 2026Updated last month
- ☆27Dec 20, 2021Updated 4 years ago
- fastjson 80 远程代码执行漏洞复现☆199Sep 7, 2022Updated 3 years ago
- A Go library for generating Java deserialization payloads.☆155Sep 9, 2024Updated last year
- Jsp Decoder Source Code☆16Mar 23, 2021Updated 4 years ago
- 使用JS监听获取dz密码☆12Sep 5, 2017Updated 8 years ago
- CVE-2019-18890 POC (Proof of Concept)☆10Jan 6, 2020Updated 6 years ago
- 代码审计总结☆85Sep 1, 2021Updated 4 years ago
- javaweb-codereview☆30Jan 22, 2019Updated 7 years ago
- ☆28Oct 5, 2020Updated 5 years ago
- A Large killer focused on intranet scanning☆29Aug 2, 2021Updated 4 years ago
- 自动fuzz spring的加密密码,自动解密spring的加密密码☆16Feb 4, 2023Updated 3 years ago
- SolarWinds Orion Platform ActionPluginBaseView 反序列化RCE☆47Oct 23, 2021Updated 4 years ago
- Woodpecker framework Tomcat vulnerability library☆15May 23, 2021Updated 4 years ago
- 当死去的记忆突然开始攻击我,我终于想起了我还写过一款十分十分垃圾的 rasp 靶场。☆87Jul 21, 2022Updated 3 years ago
- CVE-2020-4464 / CVE-2020-4450☆35Aug 24, 2021Updated 4 years ago
- Atlassian Questions Hardcoded Password (CVE-2022-26138)☆31Jul 26, 2022Updated 3 years ago
- ☆13Oct 12, 2017Updated 8 years ago
- An AntSword's plugin to scan webshell☆16Sep 2, 2019Updated 6 years ago
- 内存马持久化☆59May 19, 2022Updated 3 years ago
- [fastjson 1.2.80] CVE-2022-25845 aspectj fileread & groovy remote classload☆91Sep 2, 2022Updated 3 years ago
- CS shellcode 加载器☆61Jan 7, 2022Updated 4 years ago
- 关于Struts2框架的历史漏洞个人分析文章☆54Jun 17, 2020Updated 5 years ago
- rmi打内存马工具,适用于目标用不了ldap的情况☆254Jul 12, 2023Updated 2 years ago
- golang写的批量对目标网站进行截图的小工具,适合目标资产比较多时,快速定位薄弱点。☆33Oct 14, 2022Updated 3 years ago
- Proof of Concept for a VSCode Python Extension Code Execution Vulnerability☆16Mar 17, 2020Updated 5 years ago