we1h0 / awesome-java-security-checklistLinks
awesome-java-security-checklist(关于Java安全方面,Java基础/审计/修复/设计/规范)
☆128Updated 5 years ago
Alternatives and similar repositories for awesome-java-security-checklist
Users that are interested in awesome-java-security-checklist are comparing it to the libraries listed below
Sorting:
- 鹏 RocB - Java代码审计IDEA插件 SAST☆150Updated 4 years ago
- 集成crawlergo、xray、dirsearch、nmap等工具的src漏洞挖掘工具,使用docker封装运行;使用oneforall自动遍历子域名并扫描;☆115Updated 4 years ago
- 渗透 超全面的渗透资料💯 包含:0day,xss,sql注入,提权……☆65Updated 7 years ago
- 漏洞挖掘技巧及其一些工具集成☆138Updated 3 years ago
- CVE-2022-22947☆220Updated 3 years ago
- 扫描常见未授权访问(redis、mongodb、memcached、elasticsearch、zookeeper、ftp、CouchDB、docker、Hadoop)☆190Updated 5 years ago
- 一款通过污点追踪发现Jsp webshell的工具(A tool to find Jsp Webshell through stain tracking)☆178Updated 3 years ago
- 🐸Unauthorized Detection Framework未授权访问检测框架☆161Updated last year
- Java编写的Web漏洞靶场☆88Updated 3 years ago
- burpsuite extension for check unauthorized vulnerability☆234Updated 4 years ago
- Struts2漏洞实例源码☆208Updated 4 years ago
- 规范渗透测试报告中的漏洞名称以及修复建议☆145Updated 6 years ago
- 📖《内网安全攻防-渗透测试实战指南》☆123Updated 5 years ago
- 域渗透脑图中文翻译版☆279Updated 4 years ago
- 批量检测敏感信息泄露☆60Updated 5 years ago
- 应急响应资料收集☆90Updated 5 years ago
- java decompile audit tools☆228Updated 2 years ago
- A Burp plugin that collects Burp request parameters, directories, paths and file names into the database for sorting☆91Updated 4 years ago
- 通过正则搜索、批量反编译特定Jar包中的class名称☆316Updated 3 years ago
- 扫描存在CORS跨域漏洞的网站。☆92Updated 6 years ago
- fastjson bypass autotype 1.2.68 with Throwable and AutoCloseable.☆227Updated 2 years ago
- 一个子域名接管检测工具☆144Updated 4 years ago
- 收集整理一些漏洞,利用方法,poc等等,方便快速查阅☆59Updated 4 years ago
- SpringBoot Actuator未授权自动化利用,支持信息泄漏/RCE☆231Updated 4 years ago
- 一款基于burp的反射xss检测插件☆155Updated 3 years ago
- 常见漏洞描述、漏洞影响及修复建议,为规范的渗透测试报告提供参考 | Common vulnerability descriptions, vulnerability impacts and remediation recommendations for standardi…☆55Updated 4 years ago
- RASP测试靶场☆174Updated 2 years ago
- 2020年网上阅读过的文章记录☆40Updated 4 years ago
- SQL 注入利用工具,存在waf的情况下自定义编写tamper脚本 dump数据☆290Updated 5 years ago
- Shiro反序列化回显利用、内存shell、检查 Burp插件☆217Updated 3 years ago