mbechler / ysoserialLinks
A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.
☆12Updated 9 years ago
Alternatives and similar repositories for ysoserial
Users that are interested in ysoserial are comparing it to the libraries listed below
Sorting:
- Apache Thrift Decoder☆35Updated 8 years ago
- Extension providing view with filtering capabilities for both complete and incomplete requests from all burp tools.☆47Updated 5 years ago
- Burp Extension to manipulate AES encrypted payloads☆24Updated 8 years ago
- ☆45Updated 8 years ago
- sebug.net上面的镜像☆63Updated 11 years ago
- Repo for proof of concept exploits and tools.☆56Updated 5 years ago
- JavaPayload is a collection of pure Java payloads to be used for post-exploitation from pure Java exploits or from common misconfiguratio…☆125Updated last year
- Radamsa fuzzer extension for Burp Suite☆23Updated 12 years ago
- Burp Suite AMF Extension☆48Updated 7 years ago
- ZipArchive 2.1.4 dir traversal 0-Day☆17Updated 7 years ago
- Python script to hook ZIP files passwords in Windows 10☆75Updated 7 years ago
- Proof of concept showing how java byte code can be injected through InitialContext.lookup() calls☆42Updated 10 years ago
- A simple script to decrypt stored passwords from Oracle WebLogic Server configuration files☆30Updated 9 years ago
- AndroidManifest.xml security auditor☆71Updated 13 years ago
- Repository with research related to Android☆13Updated 7 years ago
- ☆72Updated 7 years ago
- A simple Google Protobuf Decoder for Burp☆107Updated 11 years ago
- Burp extension to edit messages with UTF-8☆12Updated 7 years ago
- CapFuzz - capture, fuzz & intercept web traffic.☆65Updated 6 years ago
- Burp_Extender_para_encrypter☆39Updated 7 years ago
- CVE-2016-8610 (SSL Death Alert) PoC☆33Updated 9 years ago
- 2 web tasks from ZeroNights HackQuest 2016☆50Updated 8 years ago
- there are some guidelines for us to do penetration on Android application☆23Updated 6 years ago
- XXE injection (file disclosure) exploit for Apache OFBiz < 16.11.04☆13Updated 7 years ago
- Proof of concept exploit for CVE-2017-3599☆23Updated 8 years ago
- ERPScan Public POC for CVE-2018-2636☆22Updated 8 years ago
- PoC of Remote Command Execution via Log injection on SAP NetWeaver AS JAVA CRM☆52Updated 7 years ago
- Primitive tool for exploring/querying Java classes via the Tinkerpop Gremlin graph traversal language☆110Updated 9 years ago
- PoC materials to exploit CVE-2019-15846☆30Updated 6 years ago
- CVE-2018-2628☆20Updated 7 years ago