☆16Oct 30, 2022Updated 3 years ago
Alternatives and similar repositories for LearnDemo
Users that are interested in LearnDemo are comparing it to the libraries listed below
Sorting:
- 在spring-aop中新发现的反序列化gadget-chain☆52Jan 12, 2025Updated last year
- ☆50Nov 4, 2022Updated 3 years ago
- An exploit for CVE-2022-42475, a pre-authentication heap overflow in Fortinet networking products☆36Jun 21, 2023Updated 2 years ago
- 方便自己搭建codeql环境和数据库的工具。☆64Aug 16, 2025Updated 6 months ago
- SSDG 基于Social规则的账号|密码|口令字 典生成工具☆16Jan 10, 2025Updated last year
- 一款支持高度自定义的 Java 内存马生成工具☆14Aug 26, 2025Updated 6 months ago
- 安全升级jar包时,辅助检测Java Archive (JAR) 包之间兼容性,各类符号引用的存在检测,包括方法、方法签名、字段定义和引用、类引用等等☆14Jul 7, 2024Updated last year
- 🧠碎片化知识☆16Aug 26, 2020Updated 5 years ago
- Research & Study☆17Feb 7, 2026Updated 3 weeks ago
- Java XMLDecoder payload generator☆16Jul 27, 2021Updated 4 years ago
- PaddingZip is a tool that you can craft a zip file that contains the padding characters between the file content.☆81Aug 14, 2022Updated 3 years ago
- Java Inline ASM Library (一个Java内联汇编的库,可以让你在普通Java代码中插入任意的JVM指令,实现类似内联汇编的功能)☆26Dec 5, 2022Updated 3 years ago
- 如果反序列化过程中使用resolveClass拉黑了TemplatesImpl如何绕过☆53Sep 10, 2023Updated 2 years ago
- 若依4.8.0后台RCE☆27May 21, 2025Updated 9 months ago
- ☆95Feb 9, 2023Updated 3 years ago
- Atlassian Companion RCE Vulnerability Proof of Concept☆25Dec 15, 2023Updated 2 years ago
- 一款使用Yaml定义搜索规则来搜索Class的工具☆108Aug 2, 2023Updated 2 years ago
- Abusing SSRF to deliver an authenticated command injection payload☆29Sep 1, 2025Updated 6 months ago
- Struts2全漏洞扫描利用工具☆22Jun 16, 2020Updated 5 years ago
- HTTP报文加密的具体实现,用于测试 https://github.com/outlaws-bai/Galaxy☆33Dec 29, 2025Updated 2 months ago
- 内存马查杀工具,尤其针对Agent型,原理是dump出JVM当前的class并进行字节码分析,并加入自动修复的功能☆179May 10, 2023Updated 2 years ago
- GPT渗透测试工具☆26Apr 24, 2023Updated 2 years ago
- ☆34Mar 6, 2025Updated 11 months ago
- ☆22Oct 30, 2019Updated 6 years ago
- 该项目收集了很多厂商产品CMS的漏洞环境,以web为主。漏洞环境主要以Dockerfile的文件形式呈现,用户只需一键启动相应漏斗环境,使用项目文章中提供的poc,便可进行复现。☆67May 2, 2025Updated 10 months ago
- An example of a downloader written in NodeJS.☆24Apr 17, 2021Updated 4 years ago
- A Java Route Collection Tool☆102Aug 1, 2024Updated last year
- Vulnerability Research and Proof of Concept exploits for ONLYOFFICE☆26Aug 24, 2023Updated 2 years ago
- 移动端App安全测试MCP工具集 - 基于ADB、aapt、JADX的完整移动应用安全分析平台☆54Updated this week
- pdf-js-inject,能够将js代码注入到pdf文件中,也可以注入xss-payload到pdf文件中☆31Sep 8, 2024Updated last year
- 用Go+Fyne开发的,展示JAVA序列化流以及集成一键插入脏数据,UTF过长编码绕WAF(Utf OverLoad Encoding),修改类SerializeVersionUID功能的图形化工具。☆125Jan 14, 2025Updated last year
- Java bytecode line number restoration tool☆134Aug 31, 2025Updated 6 months ago
- Java 代码审计-存在风险的函数汇总。方便我们日常代码审计过程中快速定位漏洞点,配合静态代码分析工具做到事半功倍。Java code audit - summary of risky functions. It is convenient for us to quickl…☆31Jul 16, 2024Updated last year
- 用友 nc 系列密码解密☆61Apr 7, 2023Updated 2 years ago
- 用于windows反弹shell的yaml-payload☆71Jun 26, 2021Updated 4 years ago
- ☆28Oct 5, 2020Updated 5 years ago
- Security Research☆36Dec 23, 2021Updated 4 years ago
- A list for Spring Security☆128Jan 16, 2024Updated 2 years ago
- 之前方便自己研究RASP原理和绕过时顺手写的,用于快速启动和重置RASP环境☆71Oct 13, 2024Updated last year