blindpirate / spring-rce-2022-03
☆15Updated 3 years ago
Alternatives and similar repositories for spring-rce-2022-03
Users that are interested in spring-rce-2022-03 are comparing it to the libraries listed below
Sorting:
- spring-cloud-function SpEL RCE, Vultarget & Poc☆134Updated 3 years ago
- The project is a simple vulnerability Demo environment written by SpringBoot. Here, I deliberately wrote a vulnerability environment wher…☆87Updated 3 years ago
- Log4j_dos_CVE-2021-45105☆13Updated 3 years ago
- Using JavaParser (https://github.com/JavaParser/JavaParser), browse and navigate the Abstract Syntax Tree (AST) based on the code in your…☆51Updated last month
- log4j2-vaccine☆85Updated 3 years ago
- jasypt Decrypt Encrypt☆14Updated 3 years ago
- Debug CVEs!☆33Updated last year
- A project demonstrating an app that is vulnerable to Spring Security authorization bypass CVE-2022-31692☆36Updated 2 years ago
- Unofficial Dockerfile and scripts for building CodeQL databases for the OpenJDK☆49Updated last year
- 《深入理解IAST交互式应用安全测试》Interactive Application Security Testing.☆13Updated 2 years ago
- Run Swing based GUI application within the Docker container through the Jetbrains Projector, and access it from browsers.☆18Updated 4 years ago
- ☆16Updated 5 years ago
- Use java instrument API without JAR file☆45Updated 2 years ago
- CodeQL database manager☆48Updated last month
- 基于污点分析和模拟栈帧技术的JSP Webshell检测☆45Updated 4 months ago
- Custom / Experimental CodeQL queries☆37Updated 3 years ago
- 冰蝎客户端源码☆14Updated 5 years ago
- A JVM agent that automatically forces a proxy for HTTP(S) connections and trusts MitM certificates, for all major JVM HTTP clients☆81Updated last month
- Library for manually creating Java serialization data.☆30Updated 2 years ago
- ☆20Updated 4 years ago
- My CodeQL queries collection☆97Updated last year
- Java agent without file 无文件的Java agent☆78Updated 3 years ago
- Demonstrate how usage of the Java Security Manager can prevent Remote Code Execution (RCE) exploits.☆26Updated last year
- A branch (technically done as a subtree) of apache jasper with tomcat dependencies removed.☆12Updated last month
- Low-level RASP: Protecting Applications Implemented in High-level Programming Languages☆59Updated last year
- 🍵 Gitea repository migration remote command execution exploit.☆85Updated 2 years ago
- Sample Spring application to Demonstrate the Gateway Actuator☆47Updated 3 years ago
- Google V8 with OpenRASP builtins☆57Updated 4 years ago
- https://github.com/GrrrDog/Java-Deserialization-Cheat-Sheet☆50Updated 3 years ago
- A static analysis API for finding deserialization attack gadgets☆38Updated 2 years ago