hosch3n / FastjsonVulns
[fastjson 1.2.80] CVE-2022-25845 aspectj fileread & groovy remote classload
☆90Updated 2 years ago
Alternatives and similar repositories for FastjsonVulns:
Users that are interested in FastjsonVulns are comparing it to the libraries listed below
- ☆50Updated 2 years ago
- java☆54Updated 2 years ago
- Java 内存马生成插件☆50Updated last year
- Automatically scan jar packages by using ast to find fastjson gadgets. In particular, this project is limited to mining Gadgets that may …☆50Updated 3 years ago
- 一些结合第三方组件的Fastjson POC,在1.2.48以后版本中陆续被添加至黑名单。☆56Updated 5 years ago
- 当 死去的记忆突然开始攻击我,我终于想起了我还写过一款十分十分垃圾的 rasp 靶场。☆78Updated 2 years ago
- woodpecker-framework框架http发包库,专门为漏洞检测与利用场景设计。☆67Updated last year
- 卸载冰蝎内存马☆67Updated 3 years ago
- 在原有yso基础上实现依赖分离,内存马注入等功能。A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆68Updated 3 years ago
- XxlJob<=2.1.2配置不当情况下反序列化RCE☆92Updated 4 years ago
- CodeQL 寻找 JNDI利用 Lookup接口☆163Updated 2 years ago
- CVE-2021-43297 POC,Apache Dubbo<= 2.7.13时可以实现RCE☆38Updated 3 years ago
- ☆81Updated 3 years ago
- 如何将Java反序列化Payload极致缩小☆48Updated 3 years ago
- ☆13Updated 2 years ago
- springboot跨线程注入内存马☆116Updated 2 years ago
- Kunlun-M 的GUI程序☆51Updated 2 years ago
- 利用shiro反序列化注入冰蝎内存马☆35Updated 3 years ago
- NoPacScan is a CVE-2021-42287/CVE-2021-42278 Scanner,it scan for more domain controllers than other script☆86Updated 3 years ago
- A IntelliJ Plugin for Tabby to Find Vulnerabilities Easily☆33Updated 4 months ago
- ☆35Updated 3 years ago
- Apache Dubbo Hessian2 CVE-2021-43297 demo☆46Updated 3 years ago
- SMTP Netcat , test SMTP protocol☆105Updated 3 years ago
- cve-2022-34169 延伸出的Jdk Xalan的payload自动生成工具,可根据不同的Jdk生成出其所对应的xslt文件☆90Updated 2 years ago
- 一个Spring4Shell 被动式检测的Burp插件☆93Updated 2 years ago
- 之前方便自己研究RASP原理和绕过时顺手写的,用于快速启动和重置RASP环境☆55Updated 5 months ago
- 一个简单的批量反编译jar包的小脚本☆35Updated 3 years ago
- ☆137Updated 2 years ago
- ☆68Updated 3 years ago
- ☆42Updated 5 years ago