mbechler / ysoserialLinks
A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.
☆12Updated 9 years ago
Alternatives and similar repositories for ysoserial
Users that are interested in ysoserial are comparing it to the libraries listed below
Sorting:
- PoC for Scala and Groovy☆14Updated 9 years ago
- RCE Exploit PoC for Spring based RESTFul APIs using XStream as Unmarshaler☆20Updated 11 years ago
- Simple socket-based gateway to the Burp Collaborator☆34Updated 8 years ago
- Apache Thrift Decoder☆34Updated 7 years ago
- CVE-2018-2628☆20Updated 7 years ago
- PoC materials to exploit CVE-2019-15846☆30Updated 6 years ago
- Burp Suite AMF Extension☆48Updated 7 years ago
- Repo for proof of concept exploits and tools.☆56Updated 5 years ago
- Burp Extension to manipulate AES encrypted payloads☆24Updated 8 years ago
- ERPScan Public POC for CVE-2018-2636☆22Updated 7 years ago
- Search hashes in different website.☆34Updated 5 years ago
- Proof of concept showing how java byte code can be injected through InitialContext.lookup() calls☆42Updated 9 years ago
- Metasploit Framework☆31Updated 5 years ago
- A collection of Browser DOM Vulnerabilities with PoCs☆40Updated 6 years ago
- Study about HQL injection exploitation.☆51Updated 9 years ago
- Proof of concept showing how to exploit the CVE-2018-11759☆40Updated 6 years ago
- CapFuzz - capture, fuzz & intercept web traffic.☆64Updated 6 years ago
- Proof of concept exploit for CVE-2017-3599☆23Updated 8 years ago
- JavaPayload is a collection of pure Java payloads to be used for post-exploitation from pure Java exploits or from common misconfiguratio…☆126Updated 9 months ago
- Python script to hook ZIP files passwords in Windows 10☆75Updated 7 years ago
- 绕过burp破解版的截止日期限制. This is a tool to bypass the cracked version of the burpsuite_pro(Larry_Lau) certification deadline through time revers…☆23Updated 3 years ago
- 2 web tasks from ZeroNights HackQuest 2016☆50Updated 8 years ago
- sebug.net上面的镜像☆63Updated 11 years ago
- ☆17Updated 7 years ago
- ZipArchive 2.1.4 dir traversal 0-Day☆17Updated 7 years ago
- Exploit for Jenkins serialization vulnerability - CVE-2016-0792☆49Updated 8 years ago
- CSRF Scanner Extension for Burp Suite Pro☆20Updated 7 years ago
- An example project that exploits the default typing issue in Jackson-databind via Spring application contexts and expressions☆124Updated 7 years ago
- Burp extension to edit messages with UTF-8☆12Updated 7 years ago
- CVE-2016-8610 (SSL Death Alert) PoC☆33Updated 8 years ago