Whoopsunix / utf-8-overlong-encoding
抽离出 utf-8-overlong-encoding 的序列化逻辑,实现 2 3 字节加密序列化数组
☆109Updated 7 months ago
Related projects ⓘ
Alternatives and complementary repositories for utf-8-overlong-encoding
- proof-of-concept for generating Java deserialization payload | Proxy MemShell☆175Updated 5 months ago
- JDBC Attack Tricks☆135Updated last year
- A Java Route Collection Tool☆84Updated 3 months ago
- 如果反序列化过程中使用resolveClass拉黑了TemplatesImpl如何绕过☆46Updated last year
- SpringBootAdmin-thymeleaf-SSTI which can cause RCE☆77Updated last year
- 支持常见中间件无文件落地冰蝎内存马注入&&文件上传agent冰蝎马注入☆31Updated last year
- 一款让你不只在dubbo-sample、vulhub或者其他测试环境里检测和利用成功的Apache Dubbo 漏洞检测工具。☆160Updated last year
- Java命令行文件监控小工具(代码审计)☆95Updated 2 years ago
- 多组件客户端☆68Updated 2 months ago
- evil-mysql-server is a malicious database written to target jdbc deserialization vulnerabilities and requires ysoserial.☆84Updated 2 years ago
- Java表达式语句生成器☆179Updated last year
- 自己积累的一些Java反序列化利用链☆86Updated last year
- 检测查杀java内存马☆74Updated 11 months ago
- CVE-2023-22527 内存马注入工具☆73Updated 8 months ago
- 使用 agent 实现反序列化 utf8 overlong☆67Updated 6 months ago
- ☆46Updated 2 months ago
- 4个 .soap 版本的WebShell(持续更新维护),优点:可以运行于子目录,突破了过去只能运行于根目录的限制。4个脚本分别支持调用cmd.exe/哥斯拉/冰蝎/天蝎 客户端。☆174Updated this week
- nuclei模版生成插件☆104Updated 10 months ago
- Spel-research☆24Updated 2 years ago
- A list for Spring Security☆118Updated 9 months ago
- Apache RocketMQ 远程代码执行漏洞(CVE-2023-33246) Exploit☆76Updated last year
- 用java实现构造openwire协议,利用activeMQ < 5.18.3 RCE 回显利用 内存马注入☆259Updated 11 months ago
- ☆110Updated last year
- 一款办公应用云凭证利用工具☆85Updated 5 months ago
- java-swing-gui-stater | Java Swing GUI Maven 项目模板 | 简单的教程☆32Updated last week
- xxl-job内存马☆117Updated last week
- springboot跨线程注入内存马☆114Updated 2 years ago
- 本工具的定位是快速生成Java安全相关的Payload,如内存马、反序列化链、JNDI url、Fastjson等,动态生成相关Payload,并附带相应的文档。☆90Updated 2 years ago
- pyyso is a Python package that generate java serialized poc. Including CommonsCollections1-7, JDK7u21, JDK8u20, ldap for jndi, shiro-550,…☆49Updated 2 years ago