artsploit / yaml-payload
A tiny project for generating SnakeYAML deserialization payloads
☆585Updated 5 years ago
Alternatives and similar repositories for yaml-payload:
Users that are interested in yaml-payload are comparing it to the libraries listed below
- Tools, utilities and scripts to help you write redis modules!☆270Updated 9 months ago
- 80+ Gadgets(30 More than ysoserial). JNDI-Injection-Exploit-Plus is a tool for generating workable JNDI links and provide background serv…☆775Updated 9 months ago
- Remote Code Injection In Log4j☆463Updated 3 years ago
- A malicious LDAP server for JNDI injection attacks☆314Updated 3 years ago
- CVE-2021-21972 Exploit☆490Updated last year
- RevSuit is a flexible and powerful reverse connection platform designed for receiving connection from target host in penetration.☆533Updated last year
- Redis(<=5.0.5) RCE☆1,038Updated last year
- SSRF plugin for burp Automates SSRF Detection in all of the Request☆572Updated 4 years ago
- Redis 4.x/5.x RCE☆950Updated 3 years ago
- Redis 4.x/5.x RCE☆541Updated 4 years ago
- MySQL fake server for read files of connected clients☆592Updated 7 years ago
- dotnet 反序列化学习笔记☆451Updated last year
- Java RCE 回显测试代码☆1,011Updated 4 years ago
- Apache Solr Exploits 🌟☆337Updated 4 years ago
- BurpBounty 魔改版本☆412Updated 3 years ago
- redis 4.x/5.x master/slave getshell module☆359Updated 5 years ago
- OpenSource Poc && Vulnerable-Target Storage Box.☆680Updated 2 years ago
- spring boot Fat Jar 任意写文件漏洞到稳定 RCE 利用技巧☆696Updated 3 years ago
- CVE-2020–14882、CVE-2020–14883☆283Updated 4 years ago
- Some payloads of JNDI Injection in JDK 1.8.0_191+☆474Updated 4 years ago
- ZKar is a Java serialization protocol analysis tool implement in Go.☆608Updated last month
- Ghostcat read file/code execute,CNVD-2020-10487(CVE-2020-1938)☆383Updated 5 years ago
- Weblogic IIOP CVE-2020-2551☆333Updated 4 years ago
- ☆469Updated last year
- 给woodpecker框架量身定制的ysoserial☆552Updated 2 years ago
- Tomcat-Ajp协议文件读取漏洞☆773Updated 5 years ago
- 极致攻防实验室 nuclei 检测 POC☆615Updated last year
- A rouge mysql server supports reading files from most mysql libraries of multiple programming languages.☆709Updated 2 years ago
- FilterBased/ServletBased in memory shell for Tomcat and some other middlewares☆364Updated 4 years ago
- An exquisite dns&http log server for verify SSRF/XXE/RFI/RCE vulnerability☆466Updated last year