quentinhardy / jndiat
JNDI Attacking Tool
☆236Updated 2 years ago
Alternatives and similar repositories for jndiat:
Users that are interested in jndiat are comparing it to the libraries listed below
- CVE-2018-2893-PoC☆103Updated 6 years ago
- poison and relay NTLM credentials☆174Updated 6 years ago
- A vulnerable application exposing Spring Boot Actuators☆121Updated 5 years ago
- Apache Solr RCE (ENABLE_REMOTE_JMX_OPTS="true")☆103Updated 5 years ago
- CVE-2019-3396 confluence SSTI RCE☆174Updated 4 years ago
- RCE on Apache Solr using deserialization of untrusted data via jmx.serviceUrl☆209Updated 5 years ago
- MOGWAI LABS JMX exploitation toolkit☆200Updated last year
- Java serialization brute force attack tool.☆123Updated 7 years ago
- YSOSERIAL Integration with burp suite☆163Updated 2 years ago
- CVE-2018-2894 WebLogic Unrestricted File Upload Lead To RCE Check Script☆137Updated 6 years ago
- Apache Tomcat Remote Code Execution on Windows☆185Updated 5 years ago
- Jenkins RCE PoC. From unauthenticated user to remote code execution, it's a hacker's dream!☆295Updated 5 years ago
- CVE-2018-3245-PoC☆167Updated 3 years ago
- SQL Server Reporting Services(CVE-2020-0618)中的RCE☆198Updated 5 years ago
- forked from frohoff/ysoserial and added my own payloads.☆150Updated 4 years ago
- CVE-2019-1040 with Exchange☆248Updated 3 years ago
- Decode the cookies set by balancer F5, and disclousure all pool ip☆77Updated 5 years ago
- JRE8u20_RCE_Gadget☆252Updated 8 years ago
- Atlassian JIRA Template injection vulnerability RCE☆93Updated 5 years ago
- ntlm relay attack to Exchange Web Services☆330Updated 7 years ago
- CVE-2020-0688_EXP Auto trigger payload & encrypt method☆144Updated 4 years ago
- Exploitation Tool for CVE-2017-3066 targeting Adobe Coldfusion 11/12☆95Updated 2 years ago
- Collection of bypass gadgets to extend and wrap ysoserial payloads☆351Updated 2 years ago
- Oracle WebLogic WLS-WSAT Remote Code Execution Exploit (CVE-2017-10271)☆126Updated 2 years ago
- CNVD-2020-10487(CVE-2020-1938), tomcat ajp 文件读取漏洞poc☆119Updated 4 years ago
- A Burp extension for generic extraction and reuse of data within HTTP requests and responses.☆91Updated 3 years ago
- Mogwai Java Management Extensions (JMX) Exploitation Toolkit☆172Updated 8 years ago
- Native Java-based deserialization exploit for WebLogic T3 (and T3S) listeners.☆35Updated 4 years ago
- GitLab 11.4.7 SSRF配合redis远程执行代码☆122Updated 5 years ago
- An Out-of-Band XXE server for retrieving file contents over FTP.☆176Updated 4 years ago