jwilk / traversal-archives
archive file samples for testing against directory traversal
☆150Updated last month
Alternatives and similar repositories for traversal-archives:
Users that are interested in traversal-archives are comparing it to the libraries listed below
- JDBC Connection URL Attack☆409Updated 3 years ago
- Shiro-721 RCE Via RememberMe Padding Oracle Attack☆260Updated 4 years ago
- Weblogic com.tangosol.util.extractor.ReflectionExtractor RCE☆176Updated 2 years ago
- Redis 4.x/5.x RCE☆542Updated 4 years ago
- forked from frohoff/ysoserial and added my own payloads.☆151Updated 5 years ago
- ☆213Updated last year
- dotnet 反序列化学习笔记☆455Updated last year
- spring boot Fat Jar 任意写文件漏洞到稳定 RCE 利用技巧☆705Updated 4 years ago
- attackRmi☆254Updated 4 years ago
- CodeQL extractor for java, which don't need to compile java source☆339Updated 2 years ago
- Apache Solr Exploits 🌟☆340Updated 4 years ago
- ☆506Updated 2 years ago
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆50Updated 7 years ago
- redis ssrf gopher generater & redis ssrf to rce by master-slave-sync☆85Updated 4 years ago
- 闭源系统半自动漏洞挖掘工具,针对 jar/war/zip 进行静态代码分析,输出从source到sink的可达路径。LLM将验证路径可达性,并根据上下文给出该路径可信分数☆434Updated last month
- weblogic t3 deserialization rce☆271Updated 7 years ago
- ZKar is a Java serialization protocol analysis tool implement in Go.☆615Updated 2 months ago
- Weblogic IIOP CVE-2020-2551☆334Updated 5 years ago
- Redis 4.x & 5.x RCE☆141Updated 5 years ago
- Copy as requests plugin for Burp Suite☆135Updated 8 months ago
- 利用链、漏洞检测工具☆367Updated 9 months ago
- A malicious LDAP server for JNDI injection attacks☆319Updated 3 years ago
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆182Updated 4 years ago
- ☆334Updated 2 years ago
- Apache Solr RCE via Velocity template☆108Updated 5 years ago
- 一款用于JNDI注入利用的工具,大量参考/引用了Rogue JNDI项目的代码,支持直接植入内存shell,并集成了常见的bypass 高版本JDK的方式,适用于与自动化工具配合使用。☆363Updated 3 years ago
- Security & Development☆265Updated last year
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆356Updated 2 years ago
- A neo4j procedure for tabby☆121Updated 11 months ago
- A webshell and a normal file that have the same MD5☆188Updated 3 years ago