l3yx / JNDI-Injection-LDAP-Deserialization
☆34Updated last year
Alternatives and similar repositories for JNDI-Injection-LDAP-Deserialization:
Users that are interested in JNDI-Injection-LDAP-Deserialization are comparing it to the libraries listed below
- Yapi mock script RCE another version. Webshell way. 另一种 Webshell 方式的 Yapi 命令执行的方法 相比于其他的利用方式 更加微操和可控 影响更小☆65Updated 7 months ago
- 如果反序列化过程中使用resolveClass拉黑了TemplatesImpl如何绕过☆49Updated last year
- 如何将Java反序列化Payload极致缩小☆48Updated 3 years ago
- 在spring-aop中新发现的反序列化gadget-chain☆43Updated last month
- Java 内存马生成插件☆50Updated last year
- CVE-2023-46604☆63Updated last year
- windows 添加管理员--Rust版本☆44Updated 2 years ago
- Redis primary/secondary replication RCE☆43Updated 2 years ago
- Spel-research☆26Updated 2 years ago
- 之前方便自己研究RASP原理和绕过时顺手写的,用于快速启动和重置RASP环境☆55Updated 4 months ago
- 密码收集☆58Updated 2 years ago
- The Poc for CVE-2024-20931☆72Updated last year
- A IntelliJ Plugin for Tabby to Find Vulnerabilities Easily☆32Updated 3 months ago
- 用友 nc 系列密码解密☆59Updated last year
- CVE-2024-20931, this is the bypass of the patch of CVE-2023-21839☆61Updated last year
- 一个既可主动,又可被动提取链接的burp插件☆43Updated 10 months ago
- Confluence未授权添加管理员用户(CVE-2023-22515)漏洞利用工具☆108Updated last year
- 根据攻防以及域信息收集经验dump快而有用的域信息☆105Updated last year
- Tools developed during the personal learning process☆22Updated 3 years ago
- Text4Shell的burp被动扫描插件☆36Updated 2 years ago
- Nacos JRaft Hessian 反序列化 RCE EXP☆65Updated last year
- 某软最新公开gadgegt,新加入不出网利用。☆61Updated 5 months ago
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆13Updated last year
- 一个用于修改右键插件菜单层级的Burpsuite插件。A simple BurpSuite extension to change extension context menu level.☆31Updated last year
- ☆37Updated 2 months ago
- HCM宏景加解密工具☆46Updated last year
- CVE-2023-46604☆28Updated last year
- 多组件客户端☆74Updated 5 months ago
- (0day)DBSyncer后台自定义插件上传-注入内存马☆13Updated 5 months ago