coffeehb / Spring4Shell
一个Spring4Shell 被动式检测的Burp插件
☆93Updated 2 years ago
Alternatives and similar repositories for Spring4Shell:
Users that are interested in Spring4Shell are comparing it to the libraries listed below
- ☁️Tencent Cloud AccessKey tools☆16Updated 7 months ago
- Java命令行文件监控小工具(代码审计)☆100Updated 3 years ago
- ☆81Updated 3 years ago
- AutoScan 有多个目标时,多线程调用xray+rad进行自动扫描☆88Updated 2 years ago
- 自己的JNDI 利用工具,添加一些人性化功能☆130Updated 2 years ago
- 支持自动化的切换请求方式、自动化的请求重试、以完整的扫描Springboot路径☆2Updated 2 years ago
- 基于ysoserial扩展命令执行结果回显,生成冰蝎内存马☆87Updated last year
- 修改版FRP☆69Updated 3 years ago
- 域内密码喷射工具☆129Updated 2 years ago
- 利用RPC服务,批量探测内网Windows出网情况☆115Updated 2 years ago
- springboot跨线程注入内存马☆115Updated 2 years ago
- 应对渗透中极限环境下命令回显 & 文件落地☆132Updated 2 years ago
- 基于SerializationDumper的Shiro Cookie序列化数据解密小工具☆51Updated 4 years ago
- 用于windows反弹shell的yaml-payload☆68Updated 3 years ago
- 一款探测fastjson漏洞的BurpSuite插件☆60Updated 2 years ago
- burpsuite wildcard 插件维护分支☆1Updated 2 years ago
- 用Go+Fyne开发的,展示JAVA序列化流以及集成一键插入脏数据,UTF过长编码绕WAF(Utf OverLoad Encoding),修改类SerializeVersionUID功能的图形化工具。☆90Updated last month
- weblogic历史漏洞利用工具☆90Updated 2 years ago
- ☆29Updated 3 years ago
- remote execute js when debugger.paused☆42Updated last year
- woodpecker-framework框架http发包库,专门为漏洞检测与利用场景设计。☆67Updated last year
- 在原有yso基础上实现依赖分离,内存马注入等功能。A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆68Updated 3 years ago
- 利用字符集编码绕过waf的burpsuite插件☆116Updated 3 years ago
- 安服面经☞渗透测试/代码审计/安全研究☆26Updated 2 years ago
- ThinkPHP日志分析☆74Updated 2 years ago
- log4j2 RCE漏洞(CVE-2021-44228)内网扫描器,可用于在不出网的条件下进行漏洞扫描,帮助企业内部快速发现Log4jShell漏洞。☆37Updated 3 years ago
- nuclei模版生成插件☆105Updated last year
- ☆37Updated 3 years ago
- 对接JNDIMonitor的Burp Suite被动扫描插件☆23Updated 3 years ago
- ☆25Updated last year