Y4tacker / Web-SecurityLinks
A repository to record my usual studies
☆27Updated 2 years ago
Alternatives and similar repositories for Web-Security
Users that are interested in Web-Security are comparing it to the libraries listed below
Sorting:
- javaDeserializeLabs☆69Updated 2 years ago
- 2023 各大 CTF 的比赛附件☆49Updated 2 years ago
- 是一些比赛中的好题,加上自己出的一些。。。☆43Updated 2 years ago
- Some ReadObject Sink With JDBC☆216Updated last year
- A Java Route Collection Tool☆97Updated 10 months ago
- 一些常见字典☆170Updated 3 years ago
- Apache Dubbo (CVE-2023-23638)漏洞利用的工程化实践☆224Updated last year
- ☆215Updated 8 months ago
- A neo4j procedure for tabby☆121Updated 2 weeks ago
- ☆96Updated last year
- 所有碰到过的默认口令☆103Updated last year
- 禅道相关poc☆165Updated 11 months ago
- fastjson 80 远程代码执行漏洞复现☆194Updated 2 years ago
- proof-of-concept for generating Java deserialization payload | Proxy MemShell☆193Updated 11 months ago
- ☆56Updated last year
- The container escape challenge of Be A RWCTFer competition (https://be-a-rwctfer.realworldctf.com/)☆61Updated 2 months ago
- SpringBootAdmin-thymeleaf-SSTI which can cause RCE☆79Updated last year
- 2023白帽补天大会部分代码☆124Updated last year
- Java表达式语句生成器☆190Updated last year
- A lab to help you learning SSTI☆105Updated last year
- JDBC Attack Tricks☆142Updated last year
- ☆322Updated 9 months ago
- 适用于burpsuite渗透工具的多类型恶意文件代码、漏洞测试payload、脚本代码快速获取复制的在线辅助插件。☆65Updated 3 years ago
- 无需文件落地Agent内存马生成器☆237Updated last year
- 基于dbcp的fastjson rce 回显☆192Updated 3 years ago
- Collections of CTF-WEB-challs mainly for review purpose.☆30Updated last year
- 自己积累的一些Java反序列化利用链☆89Updated 2 years ago
- Java Js Engine Payloads All in one☆271Updated last year
- 小型漏洞库,提供FOFA语法及批量脚本,具体利用法请参考别的漏洞库,共4种类型47项☆101Updated 3 years ago
- 【两万字原创】零基础学fastjson漏洞(基础篇),公众号:追梦信安☆161Updated 7 months ago