☆19Jun 7, 2023Updated 2 years ago
Alternatives and similar repositories for Java-CVE-Lists
Users that are interested in Java-CVE-Lists are comparing it to the libraries listed below
Sorting:
- My security presentations☆29Aug 21, 2023Updated 2 years ago
- ☆147Jan 16, 2023Updated 3 years ago
- 如果反序列化过程中使用resolveClass拉黑了TemplatesImpl如何绕过☆53Sep 10, 2023Updated 2 years ago
- FastjsonScan,支持版本识别、出网检测、AutoType检测、依赖检测,poc验证等功能☆13Jun 17, 2025Updated 9 months ago
- anonymous to cluster-admin via Heapdump.☆30Nov 16, 2023Updated 2 years ago
- 为了准备 AWD,写了个 Filter 的集合☆94Oct 17, 2024Updated last year
- 2023白帽补天大会部分代码☆129Dec 26, 2023Updated 2 years ago
- A malicious LDAP server for JNDI injection attacks☆52Apr 29, 2023Updated 2 years ago
- 一些总结出来的gadget的flow,后续合适和加入新的flow☆67Dec 6, 2025Updated 3 months ago
- Tai-e的Web插件☆23Jun 11, 2024Updated last year
- java-web 自动化鉴权绕过☆377Apr 3, 2025Updated 11 months ago
- Java web路由内存分析工具☆438May 22, 2025Updated 9 months ago
- 东方隐侠团队出品,代码审计skill☆64Feb 25, 2026Updated 3 weeks ago
- 不那么一样的 Java Agent 内存马☆289Nov 27, 2023Updated 2 years ago
- POC for Spring Kafka Deserialization Vulnerability CVE-2023-34040☆46Oct 8, 2025Updated 5 months ago
- A list for Web Security and Code Audit☆1,220Dec 3, 2024Updated last year
- Using Deep Learning To Implement Domain Generation Algorithm.☆22Jan 11, 2022Updated 4 years ago
- ☆24Jun 12, 2023Updated 2 years ago
- 项目监控工具 以及 Codeql 自动运行☆313Apr 13, 2023Updated 2 years ago
- ☆29Feb 2, 2024Updated 2 years ago
- Java命令行文件监控小工具(代码审计)☆106Nov 29, 2021Updated 4 years ago
- Java Js Engine Payloads All in one☆291Aug 21, 2023Updated 2 years ago
- 详细的记录了一些Docker漏洞的原理、环境搭建、漏洞复现☆25Nov 22, 2022Updated 3 years ago
- 80+ Gadgets(30 More than ysoserial). JNDI-Injection-Exploit-Plus is a tool for generating workable JNDI links and provide background serv…☆870Jun 24, 2024Updated last year
- JavaSec☆46Mar 18, 2024Updated 2 years ago
- ☆29Mar 29, 2023Updated 2 years ago
- Django QuerySet.annotate(), aggregate(), extra() SQL 注入☆25May 31, 2022Updated 3 years ago
- Generate DOM clobbering attack vectors for you.☆35Jun 3, 2025Updated 9 months ago
- 收集内存马打入方式☆507May 20, 2022Updated 3 years ago
- A benchmark to evaluate taint analysis☆29Jun 20, 2022Updated 3 years ago
- ctf awd 工具脚本☆13Nov 9, 2023Updated 2 years ago
- 要是不做开源的话,我可能早就财务自由了吧?😅☆19Dec 20, 2021Updated 4 years ago
- HookCodeGenerator Plugin for IntelliJ IDEA. 适用于idea的hook代码生成器☆14Nov 28, 2023Updated 2 years ago
- ☆11Feb 2, 2025Updated last year
- Bypass JVM Class ByteCode Verifier , 对抗反编译器☆116Sep 21, 2023Updated 2 years ago
- SpringBootAdmin-thymeleaf-SSTI which can cause RCE☆86Jul 18, 2023Updated 2 years ago
- 《深入理解IAST交互式应用安全测试》Interactive Application Security Testing.☆13Oct 20, 2022Updated 3 years ago
- cve-2022-34169 延伸出的Jdk Xalan的payload自动生成工具,可根据不同的Jdk生成出其所对应的xslt文件☆93Jan 17, 2023Updated 3 years ago
- 使用 agent 实现反序列化 utf8 overlong☆84Apr 24, 2024Updated last year