l3yx / JNDI-Injection-LDAP-Deserialization
☆34Updated last year
Alternatives and similar repositories for JNDI-Injection-LDAP-Deserialization:
Users that are interested in JNDI-Injection-LDAP-Deserialization are comparing it to the libraries listed below
- 如果反序列化过程中使用resolveClass拉黑了TemplatesImpl如何绕过☆50Updated last year
- Yapi mock script RCE another version. Webshell way. 另一种 Webshell 方式的 Yapi 命令执行的方法 相比于其他的利用方式 更加微操和可控 影响更小☆65Updated 8 months ago
- windows 添加管理员--Rust版本☆44Updated 2 years ago
- Java 内存马生成插件☆50Updated last year
- The Poc for CVE-2024-20931☆73Updated last year
- 如何将Java反序列化Payload极致缩小☆48Updated 3 years ago
- A IntelliJ Plugin for Tabby to Find Vulnerabilities Easily☆33Updated 4 months ago
- 在spring-aop中新发现的反序列化gadget-chain☆43Updated 2 months ago
- 之前方便自己研究RASP原理和绕过时顺手写的,用于快速启动和重置RASP环境☆55Updated 5 months ago
- CVE-2023-46604☆63Updated last year
- Spel-research☆26Updated 2 years ago
- My security presentations☆28Updated last year
- 根据攻防以及域信息收集经验dump快而有用的域信息☆104Updated last year
- 密码收集☆58Updated 3 years ago
- 用友 nc 系列密码解密☆59Updated last year
- 检测域内常见一把梭漏洞,包括:NoPac、ZeroLogon、CVE-2022-26923、PrintNightMare☆45Updated last year
- 一个简易的woodpecker反序列化插件☆36Updated 9 months ago
- Confluence未授权添加管理员用户(CVE-2023-22515)漏洞利用工具☆107Updated last year
- Collect JSP webshell of various implementation methods. 收集JSP Webshell的各种姿势☆15Updated 3 years ago
- 解决先知文件大小限制的问题☆15Updated 7 months ago
- CVE-2023-21839工具☆27Updated 2 years ago
- Netty/WebFlux 内存马☆25Updated last year
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆13Updated last year
- 哥斯拉webshell管理工具的插件,用于连接websocket型webshell☆89Updated 11 months ago
- ☆89Updated 2 years ago
- Nacos JRaft Hessian 反序列化 RCE EXP☆64Updated last year
- 宏景ehr sql注入的tamper脚本(sqlmap使用)☆34Updated last year
- 域横向,内网信息收集利用工具☆30Updated 2 years ago
- 一个用于修改右键插件菜单层级的Burpsuite插件。A simple BurpSuite extension to change extension context menu level.☆31Updated last year