cokeBeer / pyyso
pyyso is a Python package that generate java serialized poc. Including CommonsCollections1-7, JDK7u21, JDK8u20, ldap for jndi, shiro-550, CommonsBeanutils1 no cc, JRMPClient, high version JDK Bypass, Fake MySQL for JDBC attack
☆50Updated 2 years ago
Alternatives and similar repositories for pyyso:
Users that are interested in pyyso are comparing it to the libraries listed below
- Java 内存马生成插件☆50Updated last year
- SpringBootAdmin-thymeleaf-SSTI which can cause RCE☆77Updated last year
- 某软最新公开gadgegt,新加入不出网利用。☆58Updated 4 months ago
- 基于ysoserial扩展命令执行结果回显,生成冰蝎内存马☆86Updated last year
- 如何将Java反序列化Payload极致缩小☆48Updated 3 years ago
- Spel-research☆26Updated 2 years ago
- Java命令行文件监控小工具(代码审计)☆100Updated 3 years ago
- 一个简单的批量反编译jar包的小脚本☆33Updated 2 years ago
- nacos api bypass & jwt bypass & get all configs☆38Updated last year
- ☆37Updated 2 years ago
- 自己积累的一些Java反序列化利用链☆89Updated last year
- A IntelliJ Plugin for Tabby to Find Vulnerabilities Easily☆30Updated 2 months ago
- java实现反序列化建立socket连接☆54Updated 3 weeks ago
- 《JNDI-深入理解Java万恶之源》☆38Updated last year
- 基于 Json 、自定义Go脚本的多协程验证扫描器,用于快速验证目标是否存在该漏洞或深层次利用。☆39Updated 2 months ago
- 《ASPX安全-只有ASPX安全才能拯救.NET》Only ASPX Security Can Save The NET.☆33Updated 2 years ago
- 之前方便自己研究RASP原理和绕过时顺手写的,用于快速启动和重置RASP环境☆54Updated 3 months ago
- ☆19Updated 10 months ago
- springboot跨线程注入内存马☆115Updated 2 years ago
- 一款让你不只在dubbo-sample、vulhub或者其他测试环境里检测和利用成功的Apache Dubbo 漏洞检测工具。☆167Updated last year
- XxlJob<=2.1.2配置不当情况下反序列化RCE☆83Updated 4 years ago
- ☆81Updated 3 years ago
- 如果反序列化过程中使用resolveClass拉黑了TemplatesImpl如何绕过☆49Updated last year
- 一个Spring4Shell 被动式检测的Burp插件☆93Updated 2 years ago
- Web Cache Poisoning Vulnerability Scanner☆34Updated this week
- SerializeJava是用Go语言+GUI库Fyne开发的,展示JAVA序列化流以及集成一键插入脏数据,UTF过长编码绕WAF(Utf OverLoad Encoding),修改类SerializeVersionUID功能的图形化工具。☆41Updated this week
- 用于windows反弹shell的yaml-payload☆68Updated 3 years ago