mveytsman / dilettante
Maven central doesn't do SSL when serving you JARs. Dilettante is a MiTM proxy for exploiting that.
☆159Updated 2 years ago
Alternatives and similar repositories for dilettante:
Users that are interested in dilettante are comparing it to the libraries listed below
- JMSDigger is JMS API basedEnterprise Messaging Application assessment tool☆31Updated 10 years ago
- Burp Suite extension to generate Intruder payloads using Radamsa☆87Updated 7 years ago
- Java Agent which mitigates deserialisation attacks by making certain classes unserializable☆188Updated 8 years ago
- Mass scanner for the Java serialize bug☆151Updated 5 years ago
- ☆128Updated 8 years ago
- A practical tool for bytecode manipulation and creating Managed Code Rootkits (MCRs) in the Java Runtime Environment☆57Updated 5 years ago
- Externalize Java application access to protected resources as log messages.☆41Updated 8 months ago
- TLS Redirection☆118Updated 7 years ago
- Image size issues plugin for Burp Suite☆93Updated 6 years ago
- Tool for introspection of SSL\TLS sessions☆138Updated 3 weeks ago
- XXE OOB Exploitation Toolset for Automation☆63Updated 11 years ago
- Serial Whitelist Application Trainer☆29Updated 5 years ago
- A library to assist in security-testing Unicode enabled applications during fuzzing, XSS, SQLi, etc.☆42Updated 7 years ago
- An extension for BurpSuite that highlights SSO messages in Burp's proxy window..☆116Updated 3 years ago
- Insecure web application used to test system security controls☆13Updated last month
- Jaqen - Simple DNS rebinding☆71Updated 6 years ago
- Java Deserialization☆26Updated 8 years ago
- Burp extension to help developers replicate findings from pen tests☆70Updated 5 months ago
- A set of tools made to assist in penetration testing GWT applications. Additional details about these tools can be found on my OWASP Apps…☆226Updated 4 years ago
- Improved decoder for Burp Suite☆136Updated 3 years ago
- An example of obtaining RCE via Redis and CSRF☆76Updated 8 years ago
- Exploits and research stuffs☆54Updated last year
- ☆180Updated 11 years ago
- A tiny Java agent that blocks attacks against unsafe deserialization☆83Updated 7 years ago
- Demo server for testing Java deserialization payloads☆15Updated 8 years ago
- Owasp Orizon is a source code static analyzer tool designed to spot security issues in Java applications.☆144Updated 7 years ago
- From https://code.google.com/p/jdeserialize/☆35Updated 10 years ago
- Burp extension to perform Java Deserialization Attacks☆209Updated 11 months ago