synacktiv / QLinspector
Finding Java gadget chains with CodeQL
☆166Updated this week
Alternatives and similar repositories for QLinspector:
Users that are interested in QLinspector are comparing it to the libraries listed below
- GreHack 2021 CodeQL for Java workshop☆75Updated 3 years ago
- WebLogic vulnerability exploration from beginner to expert.☆156Updated last year
- ☆185Updated 8 months ago
- A webshell and a normal file that have the same MD5☆188Updated 2 years ago
- ☆78Updated 4 years ago
- Our PoC for the vulnerable products☆45Updated 3 years ago
- Template Injection in Email Templates leads to code execution on Jira Service Management Server☆47Updated 3 years ago
- My CodeQL queries collection☆96Updated last year
- Generating payloads to reverse shell in different contexts of java.☆49Updated 2 years ago
- ZDI presentations, publications, whitepapers etc☆57Updated last month
- PaddingZip is a tool that you can craft a zip file that contains the padding characters between the file content.☆62Updated 2 years ago
- Chrome V8 n-day exploits that I've written.☆119Updated last year
- tetctf2020_amf_writeups☆23Updated 4 years ago
- MOGWAI LABS JMX exploitation toolkit☆198Updated last year
- Collection of CTF Web challenges I made☆51Updated last year
- lightyear is a tool to dump files in tedious (blind) conditions using PHP filters☆72Updated 2 months ago
- PHP binary bugs advisory☆179Updated 2 years ago
- jolokia-exploitation-toolkit☆285Updated 3 weeks ago
- 知识星球《漏洞百出》最新 20条 Topic☆114Updated 3 years ago
- ☆73Updated 2 years ago
- RmiTaste allows security professionals to detect, enumerate, interact and exploit RMI services by calling remote methods with gadgets fro…☆106Updated 4 years ago
- CVE-2022-0543_RCE,Redis Lua沙盒绕过 命令执行☆88Updated last year
- 🍵 Gitea repository migration remote command execution exploit.☆85Updated 2 years ago
- Sample Spring Boot App Demonstrating RCE via Exposed env Actuator and H2 Database☆103Updated 4 years ago
- https://github.com/GrrrDog/Java-Deserialization-Cheat-Sheet☆49Updated 3 years ago
- Slides/Demos from the BSides Munich 2019 talk "Attacking Java RMI in 2019"☆101Updated 5 years ago
- A python script to merge multiple jar files for easier debugging via JD-Eclipse☆61Updated 2 years ago
- attackRmi☆251Updated 4 years ago
- Atlassian Jira Seraph Authentication Bypass RCE(CVE-2022-0540)☆69Updated 2 years ago