mtxiaowangzi / Java-EE-VulnWebLinks
用于演示Java Web项目中,漏洞的成因及修复方案,可用于黑盒测试和白盒测试,部分修复方案可用于生产环境。
☆43Updated 7 years ago
Alternatives and similar repositories for Java-EE-VulnWeb
Users that are interested in Java-EE-VulnWeb are comparing it to the libraries listed below
Sorting:
- VulHint是辅助代码审计的 sublime text 3 插件☆67Updated 7 years ago
- Java 反序列化学习的实验代码 Java_deserialize_vuln_lab☆87Updated 7 years ago
- 基于burpsuite headless 的代理式被动扫描系统☆96Updated 5 years ago
- python security audit tool,用于python源码的代码审计,支持命令注入,sql注入☆63Updated 10 years ago
- 又一个Java Web代码审计工具☆100Updated 7 years ago
- Java Security Documents☆81Updated 6 years ago
- 一个基于docker的安全培训系统☆60Updated 4 years ago
- Struts2 历史版本的漏洞环境☆84Updated 9 years ago
- 可以直接反弹shell☆47Updated 2 years ago
- Xray 被动扫描管理☆59Updated 5 years ago
- Struts2 vuln env☆43Updated 3 years ago
- ☆83Updated 8 years ago
- 参考《利用分块传输吊打所有WAF》修改的requests的Adapter☆98Updated 7 years ago
- python audit tool 审计 注入 inject☆34Updated 9 years ago
- flash 劫持轮子,CSRF,劫持,跳转,swf 有需求可以提issues ,src挖掘,劫持response☆86Updated 6 years ago
- CNVD-C-2019-48814 Weblogic wls9_async_response 反序列化利用工具☆36Updated 6 years ago
- 收集了常见的设备默认用户名及密码和常见的用户名及弱口令☆81Updated 6 years ago
- Java漏洞练习程序,开发工具Eclipse,运行环境Java 1.7以上版本,Tocmat7以上。☆54Updated 7 years ago
- 注入检测工具☆44Updated 6 years ago
- 一款存储HTTP请求入库的burpsuite插件☆29Updated 7 years ago
- 端口扫描 + 敏感文件扫描 + POC批量调用框架☆55Updated 6 years ago
- vulnerability record☆34Updated 6 years ago
- 基于inotify的Linux文件实时监控程序,同时调用河马扫描来检测文件☆22Updated 5 years ago
- A list of interesting payloads, tips and tricks for bug bounty hunters.☆24Updated 6 years ago
- A burp extender that recalculate signature value automatically after you modified request parameter value.☆60Updated 3 years ago
- fastjson-1.2.47☆67Updated 6 years ago
- ☆85Updated 6 years ago
- java反序列化漏洞利用-JBOSS(含payload生成的java项目,漏洞利用py脚本,shodan部分目标主机搜索结果)☆51Updated 10 years ago
- fastjson-1.2.58-rce with h2 database☆34Updated 6 years ago
- A plugin to check xss by using chrome_headless☆52Updated 7 years ago