ZDI presentations, publications, whitepapers etc
☆63Nov 20, 2024Updated last year
Alternatives and similar repositories for presentations
Users that are interested in presentations are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- The Poc for CVE-2024-20931☆75Feb 2, 2024Updated 2 years ago
- javaGGC for generate commons.collections gadget chain☆12Nov 10, 2021Updated 4 years ago
- ☆147Jan 16, 2023Updated 3 years ago
- Some ReadObject Sink With JDBC☆243May 8, 2024Updated last year
- Invanti VPN Vulnerabilities for Jan - Feb 2024 - Links to Keep it all Organized☆16Feb 15, 2024Updated 2 years ago
- 安全升级jar包时,辅助检测Java Archive (JAR) 包之间兼容性,各类符号引用的存在检测,包括方法、方法签名、字段定义和引用、类引用等等☆14Jul 7, 2024Updated last year
- ☆17Sep 22, 2024Updated last year
- PoC☆12Apr 7, 2025Updated 11 months ago
- Hacking GraalVM Espresso - Abusing Continuation API to Make ROP-like Attack☆36Aug 27, 2025Updated 6 months ago
- A neo4j procedure for tabby☆137May 17, 2025Updated 10 months ago
- dotnet 反序列化学习笔记☆513Oct 19, 2023Updated 2 years ago
- ☆242Feb 28, 2026Updated 3 weeks ago
- ☆38Jan 13, 2023Updated 3 years ago
- Common Exploitation Techniques for Java RCE Vulnerabilities in Real-World Scenarios | 实战场景较通用的 Java Rce 相关漏洞的利用方式☆544Mar 6, 2025Updated last year
- Additional resources for leaking and exploiting ObjRefs via HTTP .NET Remoting (CVE-2024-29059)☆92Mar 25, 2024Updated last year
- Java表达式语句生成器☆194Oct 9, 2023Updated 2 years ago
- A vul-finder for loading CPG and automated finding vul-call-chains☆72Jul 22, 2025Updated 8 months ago
- nativeRasp that can hook native methods☆23Apr 24, 2023Updated 2 years ago
- JavaPassDump☆273Jan 7, 2022Updated 4 years ago
- 本项目可以把一个或多个Jar包构建成数据库,用户连接数据库后通过SQL语句任意搜索需要的内容,例如类和方法信息,方法调用关系等☆75Oct 11, 2023Updated 2 years ago
- Jsp Decoder Source Code☆16Mar 23, 2021Updated 5 years ago
- Write Up Code of HITB Sec-Sin 2021 Make JDBC Attacks Brilliant Again☆14Jun 24, 2023Updated 2 years ago
- Java agent without file 无文件的Java agent☆82Apr 7, 2022Updated 3 years ago
- 梧桐百科投稿通道☆22May 21, 2018Updated 7 years ago
- WSDL Parser extension for Burp☆20Feb 13, 2017Updated 9 years ago
- Java web路由内存分析工具☆438May 22, 2025Updated 10 months ago
- ☆24Oct 18, 2022Updated 3 years ago
- This repository offers insights and a proof-of-concept tool to exploit two significant deserialization vulnerabilities in Inductive Autom…☆47Dec 22, 2023Updated 2 years ago
- Show the application of fuzzy in penetration test~☆13Mar 11, 2022Updated 4 years ago
- Java JNI HellsGate/HalosGate/TartarusGate/RecycledGate/SSN Syscall/Many Shellcode Loaders☆196Jul 7, 2023Updated 2 years ago
- proof-of-concept for generating Java deserialization payload | Proxy MemShell☆223Jun 8, 2024Updated last year
- ☆17Apr 7, 2022Updated 3 years ago
- Integer overflow in FreeType software, which also affects Chrome☆29Aug 27, 2025Updated 6 months ago
- 总结了20+.Net反序列化文章,持续更新☆749Apr 3, 2024Updated last year
- 不定期记录一下浪费了时间去关注过的垃圾CVE漏洞。☆119Jul 27, 2023Updated 2 years ago
- ☆206Oct 27, 2025Updated 4 months ago
- The Router Exploitation Framework☆12Nov 10, 2017Updated 8 years ago
- Resolve offsets, gadgets and symbols from NTKernel☆58Jan 15, 2026Updated 2 months ago
- ☆96Nov 26, 2022Updated 3 years ago