mveytsman / dilettante
Maven central doesn't do SSL when serving you JARs. Dilettante is a MiTM proxy for exploiting that.
☆160Updated last month
Alternatives and similar repositories for dilettante:
Users that are interested in dilettante are comparing it to the libraries listed below
- JMSDigger is JMS API basedEnterprise Messaging Application assessment tool☆30Updated 10 years ago
- ☆128Updated 8 years ago
- TLS Redirection☆120Updated 7 years ago
- Burp extension to perform Java Deserialization Attacks☆210Updated last year
- Cracker for Apache.lang.commons RandomStringUtils(). Code for "The Java Soothsayer" talk at EkoParty 2017 by Alejo Popovici.☆32Updated 7 years ago
- ☆132Updated 9 years ago
- Image size issues plugin for Burp Suite☆93Updated 6 years ago
- A practical tool for bytecode manipulation and creating Managed Code Rootkits (MCRs) in the Java Runtime Environment☆58Updated 5 years ago
- Some scripts and exploits☆145Updated 6 years ago
- Public exploits (re)writed while learning.☆59Updated 11 years ago
- Mass scanner for the Java serialize bug☆151Updated 6 years ago
- Very crude and poorly written HTTP(s) and SMTP bin☆93Updated 4 years ago
- Insecure web application used to test system security controls☆13Updated 3 months ago
- Primitive tool for exploring/querying Java classes via the Tinkerpop Gremlin graph traversal language☆104Updated 8 years ago
- A Burp Extender plugin, that will deserialized java objects and encode them in XML using the Xtream library.☆25Updated 9 years ago
- Unicode Security Guide☆120Updated 7 years ago
- GPG Reaper - Obtain/Steal/Restore GPG Private Keys from gpg-agent cache/memory☆93Updated 7 years ago
- Java Agent which mitigates deserialisation attacks by making certain classes unserializable☆189Updated 8 years ago
- Code Review Audit Script Scanner☆140Updated last year
- A tiny Java agent that blocks attacks against unsafe deserialization☆83Updated 7 years ago
- Exploits and research stuffs☆54Updated last year
- Serial Whitelist Application Trainer☆29Updated 5 years ago
- A shellcode testing harness.☆69Updated 8 months ago
- Identify vulnerable libraries in Maven dependencies☆46Updated 2 years ago
- put this here because archival reasons.☆28Updated 7 years ago
- Materials for 44con 2014 CANAPE Workshop☆22Updated 10 years ago
- XXE vulnerability demo☆22Updated 10 years ago
- JavaPayload is a collection of pure Java payloads to be used for post-exploitation from pure Java exploits or from common misconfiguratio…☆121Updated 2 months ago
- Tool for introspection of SSL\TLS sessions☆139Updated 3 months ago
- Hardcore corruption of my execve() vulnerability in WSL☆214Updated 7 years ago