pimps / ysoserial-modified
That repository contains my updates to the well know java deserialization exploitation tool ysoserial.
☆176Updated 2 years ago
Alternatives and similar repositories for ysoserial-modified:
Users that are interested in ysoserial-modified are comparing it to the libraries listed below
- RCE exploit for a .NET JSON deserialization vulnerability in Telerik UI for ASP.NET AJAX.☆350Updated 2 years ago
- jolokia-exploitation-toolkit☆287Updated 3 months ago
- This tool is for letting you know how strong your disable_functions is and how you can bypass that.☆125Updated 5 years ago
- A super small jsp webshell with file upload capabilities.☆292Updated 3 years ago
- Collection of username lists for enumerating kerberos domain users☆89Updated 7 years ago
- Exploit for Drupal 7 <= 7.57 CVE-2018-7600☆132Updated 6 years ago
- Changes for Visual Studio 2013☆116Updated 9 years ago
- MOGWAI LABS JMX exploitation toolkit☆200Updated 2 years ago
- ☆281Updated 3 years ago
- Exfiltrate blind Remote Code Execution and SQL injection output over DNS via Burp Collaborator.☆266Updated last month
- Username guessing tool primarily for use against the default Solaris SMTP service. Can use either EXPN, VRFY or RCPT TO.☆116Updated 2 years ago
- SNMP data gather scripts☆79Updated last year
- JMX enumeration and attacking tool.☆420Updated last month
- iis6 exploit 2017 CVE-2017-7269☆87Updated 2 years ago
- Ghostcat read file/code execute,CNVD-2020-10487(CVE-2020-1938)☆383Updated 5 years ago
- Base64-based encryption oracle exploit for CVE-2017-9248 (Telerik UI for ASP.NET AJAX dialog handler)☆169Updated 4 years ago
- Telerik UI for ASP.NET AJAX File upload and .NET deserialisation exploit (CVE-2017-11317, CVE-2017-11357, CVE-2019-18935)☆173Updated 4 years ago
- Probe endpoints consuming Java serialized objects to identify classes, libraries, and library versions on remote Java classpaths.☆595Updated 4 years ago
- CVE-2019-1388 UAC提权 (nt authority\system)☆185Updated 5 years ago
- An Out-of-Band XXE server for retrieving file contents over FTP.☆179Updated 4 years ago
- A simple NodeJS WebSocket WebApp vulnerable to blind SQL injection☆70Updated 3 years ago
- Umbraco CMS 7.12.4 - (Authenticated) Remote Code Execution☆75Updated 4 years ago
- ☆206Updated 3 years ago
- exploit CVE-2019-7609(kibana RCE) on right way by python2 scripts☆160Updated last year
- ☆214Updated 2 years ago
- RCE for old gitlab version <= 11.4.7 & 12.4.0-12.8.1 and LFI for old gitlab versions 10.4 - 12.8.1☆157Updated 4 years ago
- ☆128Updated 6 years ago
- XXE Out of Band Server.☆170Updated last year
- Python exploit for the CVE-2021-22204 vulnerability in Exiftool☆91Updated 3 years ago
- Data extraction tool for Docker Registry API☆125Updated last year