TheKingOfDuck / SBCVE
不定期记录一下浪费了时间去关注过的垃圾CVE漏洞。
☆120Updated last year
Related projects ⓘ
Alternatives and complementary repositories for SBCVE
- 将令你眼前一亮的XSS利用工具!☆108Updated 3 years ago
- 命令执行不回显但DNS协议出网的命令回显场景解决方案☆272Updated last year
- 使用WindowsAPI写的一些渗透小工具☆98Updated 3 years ago
- 一个可以伪装上线Cobaltstrike的脚本☆129Updated 2 years ago
- Compatible with xray and nuclei poc framework☆189Updated last year
- 懒鬼插件/审计过的后的渗透插件/我凭本事打的SESSION凭什么还要我自己动手后渗透?☆179Updated last year
- fastjson不出网利用、c3p0☆246Updated 3 years ago
- fastjson 80 远程代码执行漏洞复现☆182Updated 2 years ago
- 利用oss实现http转发/cobalt strike上线☆341Updated last year
- 一款针对于IDE的反制蜜罐 IDE-honeypot☆101Updated 2 years ago
- The scanner helps to scan misconfigured reverse proxy servers and misconfigured forward proxy servers☆172Updated last year
- Java Js Engine Payloads All in one☆269Updated last year
- proof-of-concept for generating Java deserialization payload | Proxy MemShell☆176Updated 5 months ago
- 入侵痕迹清理/Cleaning up traces of intrusion☆167Updated 2 weeks ago
- 内存加载shellcode绕过waf☆202Updated 2 years ago
- 2023白帽补天大会部分代码☆119Updated 10 months ago
- CVE-2021-41773 CVE-2021-42013漏洞批量检测工具☆148Updated 3 years ago
- 基于 jdwp-shellifier 的进阶JDWP漏洞利用脚本(动态执行Java/Js代码并获得回显)☆232Updated last week
- ☆197Updated 2 months ago
- Apache Dubbo (CVE-2023-23638)漏洞利用的工程化实践☆218Updated last year
- 命令执行不回显但DNS协议出网的命令回显场景解决方案(修改为使用ceye接收请求,添加自定义DNS服务器)☆287Updated last year
- 泛微OA_V9全版本的SQL远程代码执行漏洞☆156Updated 2 years ago
- ☆95Updated last year
- Java表达式语句生成器☆179Updated last year
- 字典生成工具☆85Updated last year
- Java应用的一些配置文件字典,来源于公开的字典与平时收集☆296Updated 9 months ago