Personal notes for Java Deserialization Vulnerability. 对应Java反序列化漏洞利用链集合详解、个人笔记
☆18Jan 10, 2022Updated 4 years ago
Alternatives and similar repositories for Java-deserialization-vulnerability
Users that are interested in Java-deserialization-vulnerability are comparing it to the libraries listed below
Sorting:
- database of pocassist(漏洞库)☆16Jun 16, 2021Updated 4 years ago
- 关于红队方面的学习资料☆16Dec 15, 2019Updated 6 years ago
- ☆10Jul 21, 2022Updated 3 years ago
- study_summary☆10Aug 8, 2022Updated 3 years ago
- 从零开始的内网渗透学习记录☆12Mar 25, 2022Updated 3 years ago
- 在学习Java反序列化漏洞 的过程中,用来理解Java RMI程序的执行流程,演示如何攻击Java RMI程序的几个示例。☆11May 6, 2020Updated 5 years ago
- 参考国外巨佬思路,自己写一个为渗透测试初始化ubuntu虚拟机的bash脚本☆16Oct 13, 2025Updated 4 months ago
- ☆11Nov 7, 2016Updated 9 years ago
- ☆13Feb 9, 2022Updated 4 years ago
- 渗透测试学习笔记☆14Jul 9, 2022Updated 3 years ago
- Fast AEM scope gathering tool for all your public and private BugCrowd Programs☆10Jul 14, 2021Updated 4 years ago
- Cobalt Strike二次开发笔记,记录功能和思路☆16Jul 9, 2022Updated 3 years ago
- Thymeleaf SSTI Bypass☆13Nov 24, 2021Updated 4 years ago
- 从admin冲到TrustedInstaller☆17Feb 3, 2023Updated 3 years ago
- java反序列化学习笔记☆16Nov 17, 2021Updated 4 years ago
- Java反序列化漏洞学习笔记☆16Nov 17, 2019Updated 6 years ago
- weblogic漏洞利用工具☆18Jul 16, 2020Updated 5 years ago
- 结合反射调用、动态编译、BCEL、defineClass0,ScriptEngine、Expression等技术的一款免杀JSP Webshell生成工具☆19Dec 16, 2021Updated 4 years ago
- Burp Extender, ssrf scanner, 自动扫描ssrf漏洞☆46Mar 31, 2021Updated 4 years ago
- 一款综合漏洞利用工具箱。☆51Jun 15, 2022Updated 3 years ago
- 帮助红队收集目标企业员工的邮箱信息,借助必应搜索引擎爬取邮箱。☆25Apr 26, 2022Updated 3 years ago
- The poc for CVE-2022-26809 RCE via RPC will be updated here.☆20Apr 18, 2022Updated 3 years ago
- Abandoned - fastjson 1.2.24-1.2.80 poc & vulns env & how to check vul☆96Oct 30, 2023Updated 2 years ago
- Template Injection in Email Templates leads to code execution on Jira Service Management Server☆48Sep 9, 2021Updated 4 years ago
- 将fofa quake zoomeye hunter等空间测绘聚合的小工具☆23Aug 13, 2023Updated 2 years ago
- Hello, Attack Surface Scan, BurpSuite完全被动扫描插件,不主动发送任何请求,适合挂机使用。☆24Jul 10, 2022Updated 3 years ago
- 破产版免杀☆52Oct 2, 2021Updated 4 years ago
- XxlJob<=2.1.2配置不当情况下反序列化RCE☆120Nov 2, 2020Updated 5 years ago
- 个人安全开发代码汇总:包括但不限于渗透测试,资产收集,大规模漏洞扫描器,网络安全相关资料文档☆53Jul 19, 2019Updated 6 years ago
- IDOR bypass fuzz 权限绕过burp 插件 fuzz (shiro 等)☆27Sep 1, 2021Updated 4 years ago
- 文件下载命令快捷生成器,单文件版☆32Mar 30, 2021Updated 4 years ago
- w8ayScan扫描器 实验楼版本☆23Mar 21, 2017Updated 8 years ago
- Nuclei templates for K8S security scanning☆101Dec 2, 2021Updated 4 years ago
- CVE-2022-22954 VMware Workspace ONE Access freemarker SSTI 漏洞 命令执行、批量检测脚本、文件写入☆70Apr 26, 2022Updated 3 years ago
- spring框架漏洞扫描☆103Jan 4, 2022Updated 4 years ago
- 安服面经☞渗透测试/代码审计/安全研究☆28May 3, 2022Updated 3 years ago
- Burp Extension in Python hilighting DOM Sinks and Hosts using DOM XSS Wiki regex☆24Aug 28, 2013Updated 12 years ago
- codeqlpy☆28Jul 6, 2023Updated 2 years ago
- jmx未授权访问 弱口令批量检测 GUI工具☆31Apr 28, 2023Updated 2 years ago