pekita1 / SSTIFLinks
一个Fuzzing服务器端模板注入漏洞的半自动化工具
☆16Updated 9 years ago
Alternatives and similar repositories for SSTIF
Users that are interested in SSTIF are comparing it to the libraries listed below
Sorting:
- 利用递归,通过匹配网页源码里的子域内容收集所有的子域信息,可收集四级五级等多级子域名。☆33Updated 7 years ago
- Java 反序列化学习的实验代码 Java_deserialize_vuln_lab☆87Updated 6 years ago
- Xray 被动扫描管理☆57Updated 5 years ago
- 可以直接反弹shell☆47Updated 2 years ago
- vulnerability record☆34Updated 6 years ago
- Spring Data Commons RCE 远程命令执行漏洞☆57Updated 6 years ago
- 子域名后续的信息收集工具☆29Updated 5 years ago
- AWVS12&AWVS13 通用API批量导入脚本 AWVS12 & AWVS13 common API batch import script.☆25Updated 3 years ago
- A Zhiyuan OA Collaborative Office Remote Code Execution Vulnerability on Windows☆37Updated 6 years ago
- Apache Solr远程代码执行漏洞(CVE-2019-0193) Exploit☆66Updated 5 years ago
- ☆41Updated 5 years ago
- 用于演示Java Web项目中,漏洞的成因及修复方案,可用于黑盒测试和白盒测试,部分修复方案可用于生产环境。☆43Updated 7 years ago
- 一个可快速“搬运”cookie的Burp Suite插件☆25Updated 7 years ago
- 子域名监控式漏扫☆41Updated 5 years ago
- fastjson-1.2.58-rce with h2 database☆34Updated 6 years ago
- 轻量级漏洞验证和利用框架☆32Updated 3 years ago
- 安全狗sql注入绕过☆31Updated 7 years ago
- 从zoomeye or shodan or file 获取目标进行攻击。☆17Updated 5 years ago
- 又一个Java Web代码审计工具☆100Updated 7 years ago
- 提供Weblogic批量模糊指纹识别☆60Updated 6 years ago
- 一个Burpsuite插件,用于检测隐藏的XSS☆37Updated 6 years ago
- 学习过程中做的一些小工具做个记录☆29Updated 2 years ago
- PhpStudy 2016 & 2018 BackDoor Exploit☆38Updated 5 years ago
- 正在写的一个资产管理和扫描相结合的分布式扫描器☆39Updated 3 years ago
- 禅道8.2 - 9.2.1前台Getshell☆78Updated 5 years ago
- A collection of script tools for pentesting☆64Updated 5 years ago
- 对密文的加密类型进行判断的命令行工具。☆61Updated 6 years ago
- shiro反序列化检测(只是个玩具23333)☆11Updated last year
- autoType enable☆36Updated 5 years ago
- xray社区高级版证书生成,支持到 1.2.0 版本☆35Updated 4 years ago