IAST 灰盒扫描工具
☆447Jul 19, 2022Updated 3 years ago
Alternatives and similar repositories for openrasp-iast
Users that are interested in openrasp-iast are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Java Agent is a Java application probe of DongTai IAST, which collects method invocation data during runtime of Java application by dynam…☆697Dec 25, 2023Updated 2 years ago
- 🔥Open source RASP solution☆2,955Oct 2, 2025Updated 5 months ago
- ☆835Jun 7, 2022Updated 3 years ago
- KunLun-M是一个完全开源的静态白盒扫描工具,支持PHP、JavaScript的语义扫描,基础安全、组件安全扫描,Chrome Ext\Solidity的基础扫描。☆2,382Jan 16, 2026Updated 2 months ago
- IDEA静态代码安全审计及漏洞一键修复插件☆1,049Mar 10, 2022Updated 4 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting with the flexibility to host WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Cloudways by DigitalOcean.
- Passive Security Scanner (被动式安全扫描器)☆1,950Feb 8, 2023Updated 3 years ago
- OpenRASP 漏洞测试环境☆315Oct 31, 2023Updated 2 years ago
- A Java runtime information-gathering tool which uses the Java Attach API for information acquisition☆204Apr 26, 2021Updated 4 years ago
- 在渗透测试中快速检测常见中间件、组件的高危漏洞。☆728Mar 21, 2022Updated 4 years ago
- 360/0Kee-Team/crawlergo动态爬虫结合长亭XRAY扫描器的被动扫描功能☆1,183Nov 10, 2021Updated 4 years ago
- 用于辅助安全工程师漏洞挖掘、测试、复现,集合了mock、httplog、dns tools、xss,可用于测试各类无回显、无法直观判断或特定场景下的漏洞。☆866Jul 21, 2019Updated 6 years ago
- Java安全相关的漏洞和技术demo,原生Java、Fastjson、Jackson、Hessian2、XML反序列化漏洞利用和Spring、Dubbo、Shiro、CAS、Tomcat、RMI、Nexus等框架\中间件\功能的exploits以及Java Security…☆2,694Mar 14, 2024Updated 2 years ago
- 网页相似度判断:根据网页结构判断页面相似性 ,可用于相似度计算、越权检测等(Determine page similarity based on HTML page structure)☆282Jul 27, 2019Updated 6 years ago
- JAVA安全SDK及编码规范☆1,070Oct 13, 2020Updated 5 years ago
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- PHP Runtime Vulnerability Detection☆480May 25, 2019Updated 6 years ago
- Dongtai IAST is an open-source Interactive Application Security Testing (IAST) tool that enables real-time detection of common vulnerabil…☆1,316May 22, 2025Updated 10 months ago
- Java RCE 回显测试代码☆1,016Oct 15, 2020Updated 5 years ago
- 红队基础设施自动化部署工具☆852Jan 4, 2023Updated 3 years ago
- 一个利用ASM对字节码进行污点传播分析的静态代码审计应用(添加了大量代码注释,适合大家进行源码学习)。也加入了挖掘Fastjson反序列化gadget chains和SQLInject(JdbcTemplate、MyBatis、JPA、Hibernate、原生jdbc等)静…☆458Mar 24, 2022Updated 4 years ago
- Source Code Security Audit (源代码安全审计)☆3,190Sep 16, 2022Updated 3 years ago
- 越权检测工具☆744Jun 17, 2022Updated 3 years ago
- BCS(北京网络安全大会)2019 红队行动会议重点内容☆819Sep 4, 2019Updated 6 years ago
- Fastjson vulnerability quickly exploits the framework(fastjson漏洞快速利用框架)☆1,392Dec 16, 2022Updated 3 years ago
- NordVPN Special Discount Offer • AdSave on top-rated NordVPN 1 or 2-year plans with secure browsing, privacy protection, and support for for all major platforms.
- Static code auditing system☆468Jan 8, 2021Updated 5 years ago
- 🚀 A simple asset discovery engine for cybersecurity. (网络资产发现引擎)☆1,341Dec 8, 2022Updated 3 years ago
- 绿盟科技漏洞扫描器(RSAS)漏洞库☆367May 30, 2019Updated 6 years ago
- A powerful browser crawler for web vulnerability scanners☆3,021Mar 11, 2025Updated last year
- Java web common vulnerabilities and security code which is base on springboot and spring security☆2,659Dec 2, 2024Updated last year
- a simple tool to detect potential security threat in php code☆316Sep 9, 2024Updated last year
- bayonet是一款src资产管理系统,从子域名、端口服务、漏洞、爬虫等一体化的资产管理系统☆1,510Nov 22, 2022Updated 3 years ago
- SRC子域名资产监控☆1,298Jan 14, 2021Updated 5 years ago
- 从wooyun中提取的payload,以及burp插件☆841Jun 17, 2022Updated 3 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting with the flexibility to host WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Cloudways by DigitalOcean.
- JNDI服务利用工具 RMI/LDAP,支持部分场景回显、内存shell,高版本JDK场景下利用等,fastjson rce命令执行,log4j rce命令执行 漏洞检测辅助工具☆2,015May 21, 2024Updated last year
- 洞察-宜信集应用系统资产管理、漏洞全生命周期管理、安全知识库管理三位一体的平台。☆1,181Jan 12, 2021Updated 5 years ago
- Redis 4.x/5.x RCE☆975Nov 30, 2021Updated 4 years ago
- java内存对象搜索辅助工具☆823Sep 23, 2022Updated 3 years ago
- 《深入理解CodeQL》Finding vulnerabilities with CodeQL.☆1,763Nov 21, 2023Updated 2 years ago
- A CAT called tabby ( Code Analysis Tool )☆1,643Jan 17, 2026Updated 2 months ago
- Burp suite 分块传输辅助插件☆2,029Feb 23, 2022Updated 4 years ago