Web Server that serves a single file and keeps the connection open until user releases it.
☆74Nov 27, 2013Updated 12 years ago
Alternatives and similar repositories for BlockingServer
Users that are interested in BlockingServer are comparing it to the libraries listed below
Sorting:
- xxe oob receive file via web and ftp server☆106Dec 6, 2019Updated 6 years ago
- nativeRasp that can hook native methods☆23Apr 24, 2023Updated 2 years ago
- ☆31Jun 7, 2021Updated 4 years ago
- Scanner for CVE-2022-22948 an Information Disclosure in VMWare vCenter☆12May 9, 2023Updated 2 years ago
- Mogwai Java Management Extensions (JMX) Exploitation Toolkit☆174Jul 21, 2016Updated 9 years ago
- A python script to merge multiple jar files for easier debugging via JD-Eclipse☆62Jan 13, 2023Updated 3 years ago
- attackRmi☆258Oct 14, 2020Updated 5 years ago
- java内存对象搜索辅助工具☆823Sep 23, 2022Updated 3 years ago
- POC for XStream RCE☆13Dec 23, 2013Updated 12 years ago
- spring boot Fat Jar 任意写文件漏洞到稳定 RCE 利用技巧☆754Apr 14, 2021Updated 4 years ago
- Dependencies with Log4j2 Checklist☆35Dec 14, 2021Updated 4 years ago
- ☆22Nov 3, 2022Updated 3 years ago
- A byte code analyzer for finding deserialization gadget chains in Java applications☆1,080Jun 15, 2021Updated 4 years ago
- cve-2022-34169 延伸出的Jdk Xalan的payload自动生成工具,可根据不同的Jdk生成出其所对应的xslt文件☆93Jan 17, 2023Updated 3 years ago
- Java Message Exploitation Tool☆510Jul 6, 2022Updated 3 years ago
- RMI 反序列化环境 一步步☆213Aug 31, 2020Updated 5 years ago
- Java web路由内存分析工具☆438May 22, 2025Updated 9 months ago
- MySQL Fake Server use to help MySQL Client File Reading and JDBC Client Java Deserialize☆1,362Nov 18, 2021Updated 4 years ago
- Multi-language web CGI interfaces exploits.☆399Aug 22, 2022Updated 3 years ago
- 利用任意文件下载漏洞循环下载反编译 Class 文件获得网站 Java 源代码☆712May 10, 2021Updated 4 years ago
- MySQL JDBC Deserialization Payload / MySQL客户端jdbc反序列化漏洞payload☆13Feb 8, 2020Updated 6 years ago
- Java Js Engine Payloads All in one☆291Aug 21, 2023Updated 2 years ago
- Look-Ahead Java Deserialization Library☆421Jan 7, 2020Updated 6 years ago
- ☆835Jun 7, 2022Updated 3 years ago
- A helpful Java Deserialization exploit framework.☆1,242Feb 17, 2025Updated last year
- 构造字节在ASCII范围内的jar☆139Feb 14, 2022Updated 4 years ago
- A neo4j procedure for tabby☆137May 17, 2025Updated 10 months ago
- A tool to quickly check HTTP-Request-Smuggling, written by python3☆12Jun 17, 2020Updated 5 years ago
- ☆14Dec 22, 2020Updated 5 years ago
- An example project that exploits the default typing issue in Jackson-databind via Spring application contexts and expressions☆124Jan 9, 2018Updated 8 years ago
- Proof of concept showing how java byte code can be injected through InitialContext.lookup() calls☆42Jan 22, 2016Updated 10 years ago
- CodeQL extractor for java, which don't need to compile java source☆348Nov 25, 2022Updated 3 years ago
- A Java serializer in JavaScript☆80May 21, 2018Updated 7 years ago
- 静态程序分析工具 主要生成方法的CFG和.java文件的AST☆133Jul 12, 2023Updated 2 years ago
- Oracle Access Manager Unauthenticated Attacker Vulnerability CVE-2021-35587☆42Mar 14, 2022Updated 4 years ago
- ctf challenges by salt☆16Jul 8, 2019Updated 6 years ago
- jolokia-exploitation-toolkit☆311Dec 19, 2024Updated last year
- There is no pre-auth RCE in Jenkins since May 2017, but this is the one!☆607May 17, 2019Updated 6 years ago
- rmi、jndi、ldap、jrmp、jmx、jms一些demo测试☆311Jun 17, 2022Updated 3 years ago