artsploit / yaml-payload
A tiny project for generating SnakeYAML deserialization payloads
☆581Updated 5 years ago
Alternatives and similar repositories for yaml-payload:
Users that are interested in yaml-payload are comparing it to the libraries listed below
- Tools, utilities and scripts to help you write redis modules!☆267Updated 8 months ago
- 80+ Gadgets(30 More than ysoserial). JNDI-Injection-Exploit-Plus is a tool for generating workable JNDI links and provide background serv…☆763Updated 7 months ago
- CVE-2021-21972 Exploit☆491Updated last year
- Remote Code Injection In Log4j☆463Updated 3 years ago
- SSRF plugin for burp Automates SSRF Detection in all of the Request☆566Updated 4 years ago
- BurpBounty 魔改版本☆411Updated 2 years ago
- MySQL fake server for read files of connected clients☆592Updated 7 years ago
- Redis 4.x/5.x RCE☆537Updated 4 years ago
- RevSuit is a flexible and powerful reverse connection platform designed for receiving connection from target host in penetration.☆529Updated last year
- Java RCE 回显测试代码☆1,006Updated 4 years ago
- spring boot Fat Jar 任意写文件漏洞到稳定 RCE 利用技巧☆693Updated 3 years ago
- PoC collection of Atlassian(Jira, Confluence, Bitbucket) products and Jenkins, Solr, Nexus☆173Updated 9 months ago
- Apache Solr Exploits 🌟☆338Updated 4 years ago
- A malicious LDAP server for JNDI injection attacks☆306Updated 3 years ago
- dotnet 反序列化学习笔记☆447Updated last year
- Redis(<=5.0.5) RCE☆1,028Updated last year
- Ghostcat read file/code execute,CNVD-2020-10487(CVE-2020-1938)☆379Updated 4 years ago
- Weblogic IIOP CVE-2020-2551☆333Updated 4 years ago
- 极致攻防实验室 nuclei 检测 POC☆613Updated last year
- A Burp Extender for checking for struts 2 RCE vulnerabilities.☆283Updated 8 months ago
- Redis 4.x/5.x RCE☆947Updated 3 years ago
- ZKar is a Java serialization protocol analysis tool implement in Go.☆605Updated last week
- redis 4.x/5.x master/slave getshell module☆357Updated 5 years ago
- Some payloads of JNDI Injection in JDK 1.8.0_191+☆476Updated 4 years ago
- Msmap is a Memory WebShell Generator.☆575Updated last year
- 给woodpecker框架量身定制的ysoserial☆548Updated 2 years ago
- A rouge mysql server supports reading files from most mysql libraries of multiple programming languages.☆704Updated 2 years ago
- An exquisite dns&http log server for verify SSRF/XXE/RFI/RCE vulnerability☆467Updated last year
- ☆467Updated last year
- Java RMI Vulnerability Scanner☆851Updated 7 months ago