mtxiaowangzi / Java-EE-VulnWebLinks
用于演示Java Web项目中,漏洞的成因及修复方案,可用于黑盒测试和白盒测试,部分修复方案可用于生产环境。
☆43Updated 7 years ago
Alternatives and similar repositories for Java-EE-VulnWeb
Users that are interested in Java-EE-VulnWeb are comparing it to the libraries listed below
Sorting:
- VulHint是辅助代码审计的 sublime text 3 插件☆67Updated 7 years ago
- Java 反序列化学习的实验代码 Java_deserialize_vuln_lab☆87Updated 7 years ago
- 一个基于docker的安全培训系统☆60Updated 4 years ago
- 基于burpsuite headless 的代理式被动扫描系统☆96Updated 5 years ago
- python security audit tool,用于python源码的代码审计,支持命令注入,sql注入☆63Updated 10 years ago
- Java漏洞练习程序,开发工具Eclipse,运行环境Java 1.7以上版本,Tocmat7以上。☆54Updated 7 years ago
- Struts2 历史版本的漏洞环境☆84Updated 8 years ago
- 又一个Java Web代码审计工具☆100Updated 7 years ago
- ☆83Updated 8 years ago
- Java Security Documents☆80Updated 6 years ago
- Xray 被动扫描管理☆59Updated 5 years ago
- 参考《利用分块传输吊打所有WAF》修改的requests的Adapter☆98Updated 6 years ago
- Java通用漏洞修复安全组件☆60Updated 6 months ago
- 注入检测工具☆44Updated 6 years ago
- 可以直接反弹shell☆47Updated 2 years ago
- Struts2 vuln env☆43Updated 3 years ago
- 好好打比赛、、、emmmm 投机取巧是不好的☆30Updated 7 years ago
- Remote Command Execution Over Spark☆97Updated 8 years ago
- python audit tool 审计 注入 inject☆34Updated 9 years ago
- flash 劫持轮子,CSRF,劫持,跳转,swf 有 需求可以提issues ,src挖掘,劫持response☆86Updated 6 years ago
- SerialWriter is an incomplete implementation of Java serialization for study of Java deserialization vulnerabilities.☆103Updated 7 years ago
- A list of interesting payloads, tips and tricks for bug bounty hunters.☆24Updated 6 years ago
- Linux服务器信息收集脚本☆20Updated 7 years ago
- 收集了常见的设备默认用户名及密码和常见的用户名及弱口令☆81Updated 6 years ago
- 一个Burp插件,实现用AES算法透明加密原版菜刀Caidao.exe与服务器端交互的http数据流☆80Updated 6 years ago
- 一款存储HTTP请求入库的burpsuite插件☆29Updated 7 years ago
- fastjson-1.2.58-rce with h2 database☆34Updated 6 years ago
- CNVD-C-2019-48814 Weblogic wls9_async_response 反序列化利用工具☆37Updated 6 years ago
- ☆85Updated 6 years ago
- ☆146Updated 7 years ago