Xyntax / JBoss-exp
java反序列化漏洞利用-JBOSS(含payload生成的java项目,漏洞利用py脚本,shodan部分目标主机搜索结果)
☆50Updated 9 years ago
Alternatives and similar repositories for JBoss-exp:
Users that are interested in JBoss-exp are comparing it to the libraries listed below
- 配合reGeorg使用的内网扫描工具☆62Updated 8 years ago
- Struts2 历史版本的漏洞环境☆83Updated 8 years ago
- 基于HTTP代理中转菜刀过WAF☆64Updated 5 years ago
- 可以直接反弹shell☆47Updated last year
- CNVD-C-2019-48814 Weblogic wls9_async_response 反序列化利用工具☆38Updated 5 years ago
- VulHint是辅助代码审计的 sublime text 3 插件☆67Updated 6 years ago
- a management tool☆35Updated 2 years ago
- 测试过程中需要绕过各种waf或者全局的过滤机制,因此编写各种适合的tamper。☆53Updated 9 years ago
- 一款存储HTTP请求入库的burpsuite插件☆29Updated 6 years ago
- 一个适配器模块,用于调用市面上流行的PoC框架(Beebeeto/PocSuite/TangScan/KsPoc)下的PoC.☆95Updated 7 years ago
- ☆84Updated 5 years ago
- 端口扫描 + 敏感文件扫描 + POC批量调用框架☆56Updated 5 years ago
- 一个Burp插件,实现用AES算法透明加密原版菜刀Caidao.exe与服务器端交 互的http数据流☆79Updated 6 years ago
- 一个半自动化命令注入漏洞Fuzz工具(One Semi-automation command injection vulnerability Fuzz tool)☆92Updated 7 years ago
- 内网渗透信息收集脚本☆36Updated 9 years ago
- ☆32Updated 8 years ago
- weblogic绕过和wls远程执行☆36Updated 5 years ago
- Some codes for bypassing Oracle WebLogic CVE-2018-2628 patch☆114Updated 6 years ago
- 绿盟远程评估扫描器报告自动整理,扫描,排列☆17Updated 6 years ago
- Some setup scripts for security research tools.☆18Updated 8 years ago
- A js infomation dig tool.☆69Updated 4 years ago
- 一个用于识别目标网站是否采用Struts2框架开发的工具demo☆162Updated 7 years ago
- 用于演示Java Web项目中,漏洞的成因及修复方案,可用于黑盒测试和白盒测试,部分修复方案可用于生产环境。☆43Updated 6 years ago
- CVE-2018-3245☆13Updated 6 years ago
- Metasploit Framework☆41Updated 7 years ago
- 子域名后续的信息收集工具☆29Updated 4 years ago
- Remote Command Execution Over Spark☆95Updated 7 years ago
- Fuzzer常见的弱口令作为字典☆45Updated 9 years ago
- discuz ml rce☆55Updated 3 years ago
- PHP代码审计分段讲解☆26Updated 7 years ago