WIP: Demo for Attacking Apereo CAS
☆97Jul 17, 2020Updated 5 years ago
Alternatives and similar repositories for Apereo-CAS-Attack
Users that are interested in Apereo-CAS-Attack are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- CAS 硬编码 远程代码执行漏洞☆125Jun 4, 2021Updated 4 years ago
- fastjson不出网利用、c3p0☆256Jul 30, 2021Updated 4 years ago
- 适用于weblogic和Tomcat的无文件的内存马(memshell)☆270Mar 4, 2022Updated 4 years ago
- 一款基于BurpSuite的被动式FastJson检测插件☆1,237Oct 1, 2022Updated 3 years ago
- Java RCE 回显测试代码☆1,015Oct 15, 2020Updated 5 years ago
- CVE-2022-22947☆222Mar 3, 2022Updated 4 years ago
- MDUT - Multiple Database Utilization Tools☆2,197Sep 22, 2023Updated 2 years ago
- JNDI服务利用工具 RMI/LDAP,支持部分场景回显、内存shell,高版本JDK场景下利用等,fastjson rce命令执行,log4j rce命令执行 漏洞检测辅助工具☆2,014May 21, 2024Updated last year
- Fastjson姿势技巧集合☆1,833Oct 20, 2023Updated 2 years ago
- 一款基于BurpSuite的被动式shiro检测插件☆1,797Dec 14, 2022Updated 3 years ago
- 禅道相关poc☆172Jun 20, 2024Updated last year
- 一个简单的Fastjson反序列化检测burp插件☆970Jun 18, 2021Updated 4 years ago
- Shiro550/Shiro721 一键化利用工具,支持多种回显方式☆1,953Jun 4, 2021Updated 4 years ago
- Apereo CAS exploit tool☆58Jun 30, 2022Updated 3 years ago
- 使用windows api添加用户,可用于net无法使用时.分为nim版,c++版本,RDI版,BOF版。☆421Sep 29, 2021Updated 4 years ago
- 通过 Redis 主从写出无损文件☆718May 25, 2020Updated 5 years ago
- Collect JSP webshell of various implementation methods. 梳理和发现的JSP Webshell各种姿势☆1,405Jan 18, 2022Updated 4 years ago
- 通过正则搜索、批量反编译特定Jar包中的class名称☆321Dec 9, 2021Updated 4 years ago
- YApi boolean-based injection exploit.☆57Feb 8, 2023Updated 3 years ago
- 通达OA综合利用工具☆516Mar 17, 2021Updated 5 years ago
- 高危漏洞精准检测与深度利用框架☆1,458Jan 8, 2023Updated 3 years ago
- burpsuite extension for check unauthorized vulnerability☆238Oct 7, 2020Updated 5 years ago
- shiro反序列化漏洞综合利用,包含(回显执行命令/注入内存马)修复原版中NoCC的问题 https://github.com/j1anFen/shiro_attack☆2,391Apr 10, 2024Updated last year
- ☆240Feb 26, 2023Updated 3 years ago
- 一款针对向日葵的识别码和验证码提取工具☆925Nov 1, 2021Updated 4 years ago
- 高危漏洞利用工具☆1,828Feb 12, 2025Updated last year
- Burp被动扫描流量转发插件☆1,460Jun 17, 2024Updated last year
- 这是一个用于IP和域名碰撞匹配访问的小工具,旨意用来匹配出渗透过程中需要绑定hosts才能访问的弱主机或内部系统。☆1,191Apr 30, 2019Updated 6 years ago
- A tiny project for generating SnakeYAML deserialization payloads☆629Oct 14, 2025Updated 5 months ago
- 解密weblogic AES或DES加密方法☆232Dec 3, 2020Updated 5 years ago
- springboot跨线程注入内存马☆123Apr 10, 2022Updated 3 years ago
- Shiro<=1.2.4反序列化,一键检测工具☆987Mar 4, 2021Updated 5 years ago
- JNDI注入测试工具(A tool which generates JNDI links can start several servers to exploit JNDI Injection vulnerability,like Jackson,Fastjson,etc)☆2,792Mar 22, 2023Updated 3 years ago
- fastjson漏洞burp插件,检测fastjson<1.2.68基于dnslog,fastjson<=1.2.24和1.2.33<=fatjson<=1.2.47的不出网检测和TomcatEcho,SpringEcho回显方案。☆125May 14, 2021Updated 4 years ago
- WebLogic利用CVE-2020-2883打Shiro rememberMe反序列化漏洞,一键注册蚁剑filter内存shell☆535Aug 25, 2020Updated 5 years ago
- Fastjson <= 1.2.47 远程命令执行漏洞利用工具及方法☆400Jan 24, 2025Updated last year
- 阿里云accesskey利用工具☆1,225Apr 8, 2022Updated 3 years ago
- Bypass firewall for traffic forwarding using webshell☆1,430Sep 29, 2021Updated 4 years ago
- fastjson 1.2.68 版本 autotype bypass☆142Jun 17, 2022Updated 3 years ago