chaitin / log4j2-vaccine
log4j2-vaccine
☆85Updated 3 years ago
Alternatives and similar repositories for log4j2-vaccine
Users that are interested in log4j2-vaccine are comparing it to the libraries listed below
Sorting:
- 基于AST的JSONP劫持漏洞自动化挖掘☆93Updated 4 years ago
- 一个针对防御 log4j2 CVE-2021-44228 漏洞的 RASP 工具。 A Runtime Application Self-Protection module specifically designed for log4j2 RCE (CVE-2021-442…☆123Updated 3 years ago
- 利用agent hock指定的class,在jar运行周期内,用于跟踪被执行的方法,辅助做一些事情,比如挖洞啊☆126Updated 4 years ago
- 使用java agent反序列化注入内存shell☆67Updated 4 years ago
- fastjson 1.2.68 版本 autotype bypass☆140Updated 2 years ago
- Tomcat 冰蝎内存马。☆212Updated 4 years ago
- a dnslog platform with tornado, less code.☆23Updated 5 years ago
- 一个全新的敏感文件发现工具☆83Updated 4 years ago
- 鹏 RocB - Java代码审计IDEA插件 SAST☆148Updated 3 years ago
- RMI 反序列化环境 一步步☆210Updated 4 years ago
- 常用安全工具 docker镜像 自动更新仓库☆65Updated 3 years ago
- 总结了免杀webshell的方法论☆48Updated 4 years ago
- codemillx is a tool for CodeQL, extract the comments in the code and generate codeql module. 强化Go开源项目安全检测(内含开源项目漏洞挖掘方法)☆204Updated 3 years ago
- 一款通过污点追踪发现Jsp webshell的工具(A tool to find Jsp Webshell through stain tracking)☆177Updated 3 years ago
- JumpServer远程代码执行漏洞检测利用脚本☆198Updated 4 years ago
- PHP Static Program Analysis☆41Updated 2 years ago
- Spring Cloud SnakeYAML 反序列化一键注入cmdshell和reGeorg☆134Updated 4 years ago
- 又一个Java Web代码审计工具☆99Updated 7 years ago
- Redis RCE 的几种方法☆90Updated 11 months ago
- Java agent without file 无文件的Java agent☆78Updated 3 years ago
- fastjson bypass autotype 1.2.68 with Throwable and AutoCloseable.☆226Updated 2 years ago
- 自动化护网/SRC致富脚本☆82Updated 4 years ago
- 恶意软件容器靶机☆102Updated 4 years ago
- JVM runtime class loading protection agent.(JVM类加载保护agent )☆48Updated 4 years ago
- tomcat使用了自带session同步功能时,不安全的配置(没有使用EncryptInterceptor)导致存在的反序列化漏洞,通过精心构造的数据包, 可以对使用了tomcat自带session同步功能的服务器进行攻击。PS:这个不是CVE-2020-9484,9484…☆213Updated 4 years ago
- java 漏洞平台包含各种CVE☆23Updated 2 years ago
- 🐸fingerprint detect framework 批量深度指纹识别框架☆120Updated 2 years ago
- SpringBoot Actuator未授权自动化利用,支持信息泄漏/RCE☆231Updated 4 years ago
- 中国蚁剑JSP一句话Payload☆120Updated 4 years ago
- 个人使用CodeQL编写的一些规则☆176Updated 3 years ago