we1h0 / awesome-java-security-checklist
awesome-java-security-checklist(关于Java安全方面,Java基础/审计/修复/设计/规范)
☆123Updated 4 years ago
Related projects ⓘ
Alternatives and complementary repositories for awesome-java-security-checklist
- 规范渗透测试报告中的漏洞名称以及修复建议☆146Updated 5 years ago
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆351Updated 2 years ago
- 🧬 辅助生成 XRay YAML POC☆261Updated last year
- 集成crawlergo、xray、dirsearch、nmap等工具的src漏洞挖掘工具,使用docker封装运行;使用oneforall自动遍历子域名并扫描;☆117Updated 3 years ago
- fastjson bypass autotype 1.2.68 with Throwable and AutoCloseable.☆223Updated 2 years ago
- 利用链、漏洞检测工具☆367Updated 3 months ago
- 鹏 RocB - Java代码审计IDEA插件 SAST☆147Updated 3 years ago
- Java编写的Web漏洞靶场☆79Updated 2 years ago
- 扫描常见未授权访问(redis、mongodb、memcached、elasticsearch、zookeeper、ftp、CouchDB、docker、Hadoop)☆185Updated 4 years ago
- 漏洞挖掘技巧及其一些工具集成☆134Updated 2 years ago
- a burp extension to find where use fastjson☆164Updated 4 years ago
- 打造最强的Java安全研究与安全开发面试题库,帮助师傅们找到满意的工作☆173Updated 2 years ago
- ☆299Updated 3 months ago
- 又一个Java Web代码审计工具☆99Updated 6 years ago
- 🐸Unauthorized Detection Framework未授权访问检测框架☆158Updated 11 months ago
- 🌴一些安全备忘清单☆60Updated last year
- 应急响应资料收集☆86Updated 4 years ago
- CVE-2022-22947☆220Updated 2 years ago
- 一款通过污点追踪发现Jsp webshell的工具(A tool to find Jsp Webshell through stain tracking)☆175Updated 2 years ago
- 渗透 超全面的渗透资料💯 包含:0day,xss,sql注入,提权……☆62Updated 6 years ago
- ☆319Updated 3 years ago
- RMI 反序列化环境 一步步☆211Updated 4 years ago
- 给woodpecker框架量身定制的ysoserial☆523Updated 2 years ago
- 无回显漏洞测试辅助平台,平台使用Java编写,提供DNSLOG,HTTPLOG等功能,辅助渗透测试过程中无回显漏洞及SSRF等漏洞的验证和利用。☆383Updated last year
- shiro-cve-2020-17523 漏洞的两种绕过姿势分析 以及配套的漏洞环境☆114Updated 3 years ago
- 代码审计知识点整理-php☆92Updated 4 years ago
- Tomcat 冰蝎内存马。☆213Updated 4 years ago
- Shiro反序列化回显利用、内存shell、检查 Burp插件☆216Updated 2 years ago
- 一些常见字典☆152Updated 3 years ago