synacktiv / QLinspector
Finding Java gadget chains with CodeQL
☆167Updated 2 months ago
Alternatives and similar repositories for QLinspector:
Users that are interested in QLinspector are comparing it to the libraries listed below
- WebLogic vulnerability exploration from beginner to expert.☆155Updated last year
- GreHack 2021 CodeQL for Java workshop☆75Updated 3 years ago
- ☆186Updated 10 months ago
- Template Injection in Email Templates leads to code execution on Jira Service Management Server☆47Updated 3 years ago
- ☆78Updated 4 years ago
- Our PoC for the vulnerable products☆45Updated 3 years ago
- jolokia-exploitation-toolkit☆287Updated 3 months ago
- A webshell and a normal file that have the same MD5☆188Updated 2 years ago
- CVE-2022-0543_RCE,Redis Lua沙盒绕过 命令执行☆88Updated last year
- Generating payloads to reverse shell in different contexts of java.☆49Updated 2 years ago
- PHP binary bugs advisory☆179Updated 2 years ago
- PaddingZip is a tool that you can craft a zip file that contains the padding characters between the file content.☆62Updated 2 years ago
- ☆73Updated 2 years ago
- MOGWAI LABS JMX exploitation toolkit☆200Updated 2 years ago
- Ready to use docker image for CodeQL☆89Updated last year
- tetctf2020_amf_writeups☆23Updated 4 years ago
- POC for RCE using vulnerabilities described in VMSA-2023-0001☆149Updated 2 years ago
- ZDI presentations, publications, whitepapers etc☆59Updated 4 months ago
- Chrome V8 n-day exploits that I've written.☆121Updated last year
- xxe oob receive file via web and ftp server☆96Updated 5 years ago
- CVE-2020-36179~82 Jackson-databind SSRF&RCE☆80Updated 4 years ago
- POC for CVE-2021-21974 VMWare ESXi RCE Exploit☆179Updated 3 years ago
- A neo4j procedure for tabby☆119Updated 9 months ago
- A proof-of-concept tool for detection and exploitation Object Injection Vulnerabilities in .NET applications☆63Updated 4 years ago
- Low-level RASP: Protecting Applications Implemented in High-level Programming Languages☆58Updated last year
- POC for Spring Kafka Deserialization Vulnerability CVE-2023-34040☆44Updated last year
- ☆182Updated 3 years ago
- A python script to merge multiple jar files for easier debugging via JD-Eclipse☆60Updated 2 years ago
- forked from frohoff/ysoserial and added my own payloads.☆151Updated 5 years ago
- Atlassian Jira Seraph Authentication Bypass RCE(CVE-2022-0540)☆69Updated 2 years ago