veracode-research / rogue-jndi
A malicious LDAP server for JNDI injection attacks
☆1,024Updated last year
Alternatives and similar repositories for rogue-jndi:
Users that are interested in rogue-jndi are comparing it to the libraries listed below
- Exploiting CVE-2021-42278 and CVE-2021-42287 to impersonate DA from standard domain user☆1,000Updated 2 years ago
- CVE-2021-42287/CVE-2021-42278 Scanner & Exploiter.☆1,357Updated 3 years ago
- JNDI-Exploitation-Kit(A modified version of the great JNDI-Injection-Exploit created by @welk1n. This tool can be used to start an HTTP S…☆912Updated 3 years ago
- Log4j2 RCE Passive Scanner plugin for BurpSuite☆785Updated last year
- 🐱💻 ✂️ 🤬 CVE-2021-44228 - LOG4J Java exploit - WAF bypass tricks☆934Updated 3 years ago
- Java RMI Vulnerability Scanner☆851Updated 7 months ago
- Burpsuite extension for log4j2rce☆28Updated 3 years ago
- Log4Shell scanner for Burp Suite☆483Updated last year
- Log4j jndi injects the Payload generator☆487Updated 3 years ago
- Exploit for zerologon cve-2020-1472☆648Updated 4 years ago
- Abusing impersonation privileges through the "Printer Bug"☆1,935Updated 4 years ago
- Sudo Baron Samedit Exploit☆742Updated 3 years ago
- Local Service to SYSTEM privilege escalation from Windows 7 to Windows 10 / Server 2019☆1,661Updated 5 months ago
- A sugared version of RottenPotatoNG, with a bit of juice, i.e. another Local Privilege Escalation tool, from a Windows Service Accounts t…☆2,496Updated 3 years ago
- Collection of PoC and offensive techniques used by the BlackArrow Red Team☆1,098Updated 6 months ago
- log4j rce test environment and poc☆310Updated 3 years ago
- Spring4Shell Proof Of Concept/And vulnerable application CVE-2022-22965☆361Updated 2 years ago
- Exploit Code for CVE-2020-1472 aka Zerologon☆382Updated 4 years ago
- ☆1,881Updated last year
- Proof of concept for CVE-2021-31166, a remote HTTP.sys use-after-free triggered remotely.☆823Updated 3 years ago
- A byte code analyzer for finding deserialization gadget chains in Java applications☆1,013Updated 3 years ago
- JNDI注入测试工具(A tool which generates JNDI links can start several servers to exploit JNDI Injection vulnerability,like Jackson,Fastjson,etc)☆2,645Updated last year
- Exploiting CVE-2021-42278 and CVE-2021-42287 to impersonate DA from standard domain user☆840Updated 2 years ago
- A tiny project for generating SnakeYAML deserialization payloads☆580Updated 5 years ago
- ☆3,445Updated last month
- RCE 0-day for GhostScript 9.50 - Payload generator☆541Updated 3 years ago
- Dockerized Spring4Shell (CVE-2022-22965) PoC application and exploit☆310Updated 2 years ago
- The great impacket example scripts compiled for Windows☆937Updated 6 years ago
- Compiled Binaries for Ghostpack☆1,259Updated 3 months ago
- Pure PowerShell implementation of CVE-2021-1675 Print Spooler Local Privilege Escalation (PrintNightmare)☆1,032Updated 3 years ago