Spring Framework RCE (Quick pentest notes)
☆17Apr 7, 2022Updated 4 years ago
Alternatives and similar repositories for CVE-2022-22965_PoC
Users that are interested in CVE-2022-22965_PoC are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- github信息泄露搜集工具。GSIL升级版,去除发邮件方式,将结果保存在本地☆13Mar 20, 2021Updated 5 years ago
- ☆12Updated this week
- F5 BIG-IP RCE exploitation (CVE-2022-1388)☆87May 16, 2022Updated 4 years ago
- PoC for CVE-2021-3492 used at Pwn2Own 2021☆42Aug 3, 2021Updated 4 years ago
- Quick WAF "paranoid" Doctor Evaluation | WAFPARAN01D3 Tool☆24Nov 22, 2021Updated 4 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- aggregated repo for all conferences and talks I am giving☆17Oct 30, 2021Updated 4 years ago
- 批量无损检测CVE-2022-22965☆39Apr 1, 2022Updated 4 years ago
- This script was developped to assist in SpearPhishing campaign during Red Team operations. It can be used to generate random name based o…☆13Feb 6, 2023Updated 3 years ago
- Spring Framework RCE (CVE-2022-22965) Nmap (NSE) Checker (Non-Intrusive)☆101Apr 7, 2022Updated 4 years ago
- 读取dump向日葵&Todesk进程的文件获得连接信息☆16Sep 27, 2024Updated last year
- Finds Domain Controller on a network, enumerates users, AS-REP Roasting and hash cracking, bruteforces password, dumps AD users, DRSUAPI,…☆18Sep 23, 2023Updated 2 years ago
- Silent Cleanup UAC Bypass POC☆11Dec 15, 2019Updated 6 years ago
- A script that greps composite key-like strings from a KeePassXC process dump, then uses a customized version of pykeepass library to unlo…☆33Nov 12, 2022Updated 3 years ago
- 用友NC Cloud前台远程命令执行漏洞批量扫描poc、exp,带命令执行回显☆20Jul 21, 2023Updated 2 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆19Oct 2, 2022Updated 3 years ago
- ☆16Dec 16, 2021Updated 4 years ago
- ☆213Jan 19, 2023Updated 3 years ago
- Zabbix - SAML SSO Authentication Bypass☆15Mar 31, 2022Updated 4 years ago
- RCE Exploit for Gitlab < 13.9.4☆51Jun 4, 2021Updated 5 years ago
- phpMyAdmin爆破☆14Sep 17, 2020Updated 5 years ago
- This includes CVE-2022-22963, a Spring SpEL / Expression Resource Access Vulnerability, as well as CVE-2022-22965, the spring-webmvc/spri…☆14Mar 31, 2022Updated 4 years ago
- A multithreaded Python3 program that fuzzes HTTP headers and values and outputs the results to a CSV file.☆21Jan 13, 2019Updated 7 years ago
- Simple Some POCs for Pocsuite3☆25Jan 7, 2021Updated 5 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- VisualStudio port of https://github.com/guervild/BOFs/tree/dev/SilentLsassDump☆22Jul 6, 2023Updated 2 years ago
- .NET profiler DLL loading can be abused to make a legit .NET application load a malicious DLL using environment variables. This exploit i…☆48Jul 29, 2024Updated last year
- cve-2022-23131 exp☆95Feb 21, 2022Updated 4 years ago
- A simple BOF implementation of klist using Windows API☆32Jul 7, 2022Updated 3 years ago
- Jira未授权SSRF漏洞☆30Sep 30, 2019Updated 6 years ago
- CVE-2022-22965 poc including reverse-shell support☆13Nov 29, 2023Updated 2 years ago
- Handy scripts and one-liners to make life easier☆38Mar 6, 2023Updated 3 years ago
- Detect userland hooks placed by AV/EDR☆28Sep 4, 2023Updated 2 years ago
- Utility to analyse, ingest and push out credentials from common data sources during an internal penetration test.☆19Jun 12, 2022Updated 4 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- A Safer PoC for CVE-2022-22965 (Spring4Shell)☆44May 27, 2022Updated 4 years ago
- .NET wrapper around LogonUserA to test creds☆12Jun 2, 2022Updated 4 years ago
- ☆11Feb 2, 2025Updated last year
- 漏洞demo☆13Jun 10, 2021Updated 5 years ago
- CVE-2022-1388 F5 BIG-IP iControl REST Auth Bypass RCE☆83Jun 28, 2022Updated 3 years ago
- Bringing Shikata ga nai to the front html☆24Apr 28, 2022Updated 4 years ago
- JavaScript component to parse, clean, remove formatting (unformat) numbers in strings.☆10Dec 5, 2024Updated last year