Spring Framework RCE (Quick pentest notes)
☆17Apr 7, 2022Updated 4 years ago
Alternatives and similar repositories for CVE-2022-22965_PoC
Users that are interested in CVE-2022-22965_PoC are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- github信息泄露搜集工具。GSIL升级版,去除发邮件方式,将结果保存在本地☆13Mar 20, 2021Updated 5 years ago
- F5 BIG-IP RCE exploitation (CVE-2022-1388)☆87May 16, 2022Updated 4 years ago
- PoC for CVE-2021-3492 used at Pwn2Own 2021☆42Aug 3, 2021Updated 5 years ago
- aggregated repo for all conferences and talks I am giving☆17Oct 30, 2021Updated 4 years ago
- 批量无损检测CVE-2022-22965☆39Apr 1, 2022Updated 4 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- ☆21Nov 13, 2019Updated 6 years ago
- This script was developped to assist in SpearPhishing campaign during Red Team operations. It can be used to generate random name based o…☆13Feb 6, 2023Updated 3 years ago
- Spring Framework RCE (CVE-2022-22965) Nmap (NSE) Checker (Non-Intrusive)☆100Apr 7, 2022Updated 4 years ago
- Finds Domain Controller on a network, enumerates users, AS-REP Roasting and hash cracking, bruteforces password, dumps AD users, DRSUAPI,…☆18Sep 23, 2023Updated 2 years ago
- A script that greps composite key-like strings from a KeePassXC process dump, then uses a customized version of pykeepass library to unlo…☆33Nov 12, 2022Updated 3 years ago
- RCE Exploit for Gitlab < 13.9.4☆51Jun 4, 2021Updated 5 years ago
- ☆19Oct 2, 2022Updated 3 years ago
- 用友NC Cloud前台远程命令执行漏洞批量扫描poc、exp,带命令执行回显☆20Jul 21, 2023Updated 3 years ago
- Zabbix - SAML SSO Authentication Bypass☆15Mar 31, 2022Updated 4 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- ☆16Dec 16, 2021Updated 4 years ago
- ☆214Jan 19, 2023Updated 3 years ago
- phpMyAdmin爆破☆14Sep 17, 2020Updated 5 years ago
- This includes CVE-2022-22963, a Spring SpEL / Expression Resource Access Vulnerability, as well as CVE-2022-22965, the spring-webmvc/spri…☆14Mar 31, 2022Updated 4 years ago
- CVE-2022-22965 poc including reverse-shell support☆13Nov 29, 2023Updated 2 years ago
- .NET profiler DLL loading can be abused to make a legit .NET application load a malicious DLL using environment variables. This exploit i…☆50Jul 29, 2024Updated 2 years ago
- A simple BOF implementation of klist using Windows API☆32Jul 7, 2022Updated 4 years ago
- cve-2022-23131 exp☆95Feb 21, 2022Updated 4 years ago
- Jira未授权SSRF漏洞☆30Sep 30, 2019Updated 6 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Detect userland hooks placed by AV/EDR☆28Sep 4, 2023Updated 2 years ago
- 读取dump向日葵&Todesk进程的文件获得连接信息☆16Sep 27, 2024Updated last year
- .NET wrapper around LogonUserA to test creds☆13Jun 2, 2022Updated 4 years ago
- spring-core单个图形化利用工具,CVE-2022-22965及修复方案已出☆17Apr 2, 2022Updated 4 years ago
- 漏洞demo☆13Jun 10, 2021Updated 5 years ago
- CVE-2022-1388 F5 BIG-IP iControl REST Auth Bypass RCE☆84Jun 28, 2022Updated 4 years ago
- Bringing Shikata ga nai to the front html☆24Apr 28, 2022Updated 4 years ago
- JavaScript component to parse, clean, remove formatting (unformat) numbers in strings.☆10Dec 5, 2024Updated last year
- URL-IP 批量处理URL和IP 资产处理 高效渗透必备☆21Apr 6, 2023Updated 3 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- try to determine if a host is vulnerable to SpringShell CVE‐2022‐22965 and CVE‐2022‐22963☆23Jun 30, 2026Updated last month
- SubzzZ to find possible subdomains using passive recon. Tool also support Permutations, Mutations, Alterations.☆38Mar 7, 2021Updated 5 years ago
- Dumping LSASS with a duplicated handle from custom LSA plugin☆207Feb 23, 2022Updated 4 years ago
- Federated Office365 user enumeration based on correlated response trend analysis☆49May 3, 2022Updated 4 years ago
- Simple and sane cryptographic wrapper library.☆27Apr 21, 2023Updated 3 years ago
- A collection of my presentation materials.☆17Apr 29, 2024Updated 2 years ago
- CVE-2022-22965 - CVE-2010-1622 redux☆19Apr 18, 2023Updated 3 years ago