Y4tacker / HackingFernFlower
2023白帽补天大会部分代码
☆122Updated last year
Alternatives and similar repositories for HackingFernFlower:
Users that are interested in HackingFernFlower are comparing it to the libraries listed below
- JDBC Attack Tricks☆142Updated last year
- A Java Route Collection Tool☆91Updated 7 months ago
- 2023 各大 CTF 的比赛附件☆49Updated last year
- Some ReadObject Sink With JDBC☆205Updated 10 months ago
- Java表达式语句生成器☆184Updated last year
- 抽离出 utf-8-overlong-encoding 的序列化逻辑,实现 2 3 字节加密序列化数组☆121Updated last year
- A vul-finder for loading CPG and automated finding vul-call-chains☆40Updated 5 months ago
- proof-of-concept for generating Java deserialization payload | Proxy MemShell☆185Updated 9 months ago
- ☆55Updated last year
- 当死去的记忆突然开始攻击我,我终于想起了我还写过一款十分十分垃圾的 rasp 靶场。☆78Updated 2 years ago
- ☆137Updated 2 years ago
- evil-mysql-server is a malicious database written to target jdbc deserialization vulnerabilities and requires ysoserial.☆87Updated 2 years ago
- CVE-2022-25845(fastjson1.2.80) exploit in Spring Env!☆88Updated 4 months ago
- 自己积累的一些Java反序列化利用链☆87Updated 2 years ago
- Apache RocketMQ 远程代码执行漏洞(CVE-2023-33246) Exploit☆79Updated last year
- A Go library for generating Java deserialization payloads.☆155Updated 6 months ago
- 禅道研发项目管理系统`misc-captcha-user`认证绕过后台命令注入漏洞☆98Updated last year
- 是一些比赛中的好题,加上自己出的一些。。。☆43Updated 2 years ago
- 检测查杀java内存马☆76Updated last year
- 基于 jdwp-shellifier 的进阶JDWP漏洞利用脚本(动态执行Java/Js代码并获得回显)☆269Updated 3 months ago
- A malicious LDAP server for JNDI injection attacks☆51Updated last year
- A lightweight reverse proxy server that converts TLS traffic to TCP, allowing secure communication between clients and upstream servers.☆69Updated 7 months ago
- 一款让你不只在dubbo-sample、vulhub或者其他测试环境里检测和利用成功的Apache Dubbo 漏洞检测工具。☆165Updated last year
- fastjson 80 远程代码执行漏洞复现☆191Updated 2 years ago
- Apache Dubbo漏洞测试Demo及其POC☆61Updated last year
- 一个集合了多种语言的实战化Web靶场 | A practical Web shooting range that integrates multiple languages☆71Updated last week
- 字典生成工具☆85Updated last year
- A heapdump leaks Shiro key causing RCE vulnerability environment.☆53Updated 10 months ago
- 这是一个用Go编写的红队内网环境中一个能快速开启HTTP文件浏览服务的小工具,能够执行shell命令,可以执行webshell☆70Updated last year