meizjm3i / PHPVulFinderLinks
PHP Static Program Analysis
☆42Updated 2 years ago
Alternatives and similar repositories for PHPVulFinder
Users that are interested in PHPVulFinder are comparing it to the libraries listed below
Sorting:
- ☆41Updated 4 years ago
- 关于Struts2框架的历史漏洞个人分析文章☆54Updated 5 years ago
- Writeup and environment for XCTF2021Final-Dubbo☆44Updated 4 years ago
- ☆142Updated 4 years ago
- RMI 反序列化环境 一步步☆215Updated 5 years ago
- struts2 漏洞环境源代码☆75Updated 3 years ago
- fastjson 1.2.68 版本 autotype bypass☆142Updated 3 years ago
- 利用agent hock指定的class,在jar运行周期内,用于跟踪被执行的方法,辅助做一些事情,比如挖洞啊☆126Updated 5 years ago
- TongASDP漏洞测试环境☆35Updated 2 years ago
- Java After-Deserialization Attack☆79Updated 4 years ago
- 阿里云先知社区xss挑战☆22Updated 8 years ago
- 个人使用CodeQL编写的一些规则☆175Updated 3 years ago
- 打CTF实在厌倦了找利用链,就知道一个fastjson的版本,一堆依赖找啊找,头都疼。为了解决这个烦恼,用了卓卓师傅的fastjson黑名单工具和库,自己改造了一下。☆32Updated 5 years ago
- 鹏 RocB - Java代码审计IDEA插件 SAST☆150Updated 4 years ago
- solution to buggyLoader of 0CTF/TCTF 2021 Finals☆20Updated 4 years ago
- codemillx is a tool for CodeQL, extract the comments in the code and generate codeql module. 强化Go开源项目安全检测(内含开源项目漏洞挖掘方法)☆204Updated 3 years ago
- Java agent without file 无文件的Java agent☆82Updated 3 years ago
- 一个针对防御 log4j2 CVE-2021-44228 漏洞的 RASP 工具。 A Runtime Application Self-Protection module specifically designed for log4j2 RCE (CVE-2021-442…☆123Updated 3 years ago
- 为应对CTF比赛而搭建的各种环境☆156Updated 5 years ago
- bypass JEP290 RaspHook code☆62Updated 5 years ago
- 静态程序分析工具 主要生成方法的CFG和.java文件的AST☆132Updated 2 years ago
- fastjson bypass autotype 1.2.68 with Throwable and AutoCloseable.☆227Updated 3 years ago
- attackRmi☆258Updated 5 years ago
- Stick to it☆31Updated 4 years ago
- 记录各语言、框架中危险的sink,个人代码审计、漏洞研究使用。☆115Updated 3 years ago
- 个人用于在自动化挖掘gadget时,方便查找gadget chains中class所在jar包,以助于便捷审计测试gadget有效性的那么一个小工具。☆60Updated 5 years ago
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆102Updated 5 years ago
- Collection of CTF Web challenges I made☆52Updated 2 years ago
- 一款通过污点追踪发现Jsp webshell的工具(A tool to find Jsp Webshell through stain tracking)☆178Updated 3 years ago
- ☆17Updated 4 years ago