hktalent / spring-spel-0day-pocLinks
spring-cloud / spring-cloud-function,spring.cloud.function.routing-expression,RCE,0day,0-day,POC,EXP,CVE-2022-22963
☆357Updated 2 years ago
Alternatives and similar repositories for spring-spel-0day-poc
Users that are interested in spring-spel-0day-poc are comparing it to the libraries listed below
Sorting:
- Remote Code Injection In Log4j☆469Updated 3 years ago
- RevSuit is a flexible and powerful reverse connection platform designed for receiving connection from target host in penetration.☆556Updated 2 years ago
- SpringCore0day from https://share.vx-underground.org/ & some additional links☆396Updated 3 years ago
- CVE-2021-21972 Exploit☆498Updated 2 years ago
- A malicious LDAP server for JNDI injection attacks☆335Updated 4 years ago
- BurpBounty 魔改版本☆417Updated 3 years ago
- An exquisite dns&http log server for verify SSRF/XXE/RFI/RCE vulnerability☆467Updated 2 years ago
- Msmap is a Memory WebShell Generator.☆586Updated 2 years ago
- 80+ Gadgets(30 More than ysoserial). JNDI-Injection-Exploit-Plus is a tool for generating workable JNDI links and provide background serv…☆860Updated last year
- 各种CMS、各种平台、各种系统、各种软件漏洞的EXP、POC 该项目将不断更新☆268Updated 3 years ago
- CobaltStrike <= 4.7.1 RCE☆387Updated 3 years ago
- ZKar is a Java serialization protocol analysis tool implement in Go.☆630Updated 10 months ago
- OpenSource Poc && Vulnerable-Target Storage Box.☆684Updated 2 years ago
- 域控安全one for all☆733Updated last year
- Apache Solr Exploits 🌟☆348Updated 5 years ago
- A Burp Extender for checking for struts 2 RCE vulnerabilities.☆289Updated last year
- 一款用于JNDI注入利用的工具,大量参考/引用了Rogue JNDI项目的代码,支持直接植入内存shell,并集成了常见的bypass 高版本JDK的方式,适用于与自动化工具配合使用。☆360Updated 3 years ago
- 一键调用subfinder+ksubdomain+httpx 强强联合 从域名发现-->域名验证-->获取域名标题、状态码以及响应大小 最后保存结果,简化重复操作命令☆335Updated 3 years ago
- CVE-2021-22205& GitLab CE/EE RCE☆284Updated 3 years ago
- Shiro反序列化利用工具,支持新版本(AES-GCM)Shiro的key爆破,配合ysoserial,生成回显Payload☆899Updated 4 years ago
- Vulnerabilities of Goby supported with exploitation.☆738Updated 2 weeks ago
- 解决FastJson、Jackson、Log4j2、原生JNDI注入漏洞的高版本JDKBypass利用,探测本地可用反序列化gadget达到命令执行、回显命令执行、内存马注入☆761Updated 3 years ago
- Java RCE 回显测试代码☆1,014Updated 5 years ago
- Gosint is a distributed asset information collection and vulnerability scanning platform☆429Updated 2 years ago
- CVE-2022-22947☆222Updated 3 years ago
- 域渗透一条龙☆735Updated 3 years ago
- DNSLOG、httplog、rmilog、ldaplog、jndi 等都支持,完全匿名 产品(fuzz.red),Alphalog与传统DNSLog不同,更快、更安全。☆453Updated 4 months ago
- 免杀shellcode加载器☆460Updated 4 years ago
- 事件驱动的渗透测试扫描器 Event-driven pentest scanner☆692Updated last year
- spring boot Fat Jar 任意写文件漏洞到稳定 RCE 利用技巧☆748Updated 4 years ago