we1h0 / awesome-java-security-checklistLinks
awesome-java-security-checklist(关于Java安全方面,Java基础/审计/修复/设计/规范)
☆129Updated 5 years ago
Alternatives and similar repositories for awesome-java-security-checklist
Users that are interested in awesome-java-security-checklist are comparing it to the libraries listed below
Sorting:
- 鹏 RocB - Java代码审计IDEA插件 SAST☆150Updated 4 years ago
- 集成crawlergo、xray、dirsearch、nmap等工具的src漏洞挖掘工具,使用docker封装运行;使用oneforall自动遍历子域名并扫描;☆115Updated 4 years ago
- Java编写的Web漏洞靶场☆89Updated 3 years ago
- 🐸Unauthorized Detection Framework未授权访问检测框架☆161Updated last year
- 漏洞挖掘技巧及其一些工具集成☆138Updated 3 years ago
- 一款通过污点追踪发现Jsp webshell的工具(A tool to find Jsp Webshell through stain tracking)☆178Updated 3 years ago
- 扫描常见未授权访问(redis、mongodb、memcached、elasticsearch、zookeeper、ftp、CouchDB、docker、Hadoop)☆190Updated 5 years ago
- A Burp plugin that collects Burp request parameters, directories, paths and file names into the database for sorting☆91Updated 4 years ago
- 渗透 超全面的渗透资料💯 包含:0day,xss,sql注入,提权……☆66Updated 7 years ago
- 无回显漏洞测试辅助平台,平台使用Java编写,提供DNSLOG,HTTPLOG等功能,辅助渗透测试过程中无回显漏洞及SSRF等漏洞的验证和利用。☆387Updated 4 months ago
- 规范渗透测试报告中的漏洞名称以及修复建议☆145Updated 6 years ago
- fastjson bypass autotype 1.2.68 with Throwable and AutoCloseable.☆228Updated 3 years ago
- burpsuite extension for check unauthorized vulnerability☆234Updated 5 years ago
- CVE-2022-22947☆222Updated 3 years ago
- 通过正则搜索、批量反编译特定Jar包中的class名称☆317Updated 3 years ago
- java decompile audit tools☆228Updated 3 years ago
- 常见漏洞描述、漏洞影响及修复建议,为规范的渗透测试报告提供参考 | Common vulnerability descriptions, vulnerability impacts and remediation recommendations for standardi…☆56Updated 4 years ago
- 利用链、漏洞检测工具☆373Updated last year
- RASP测试靶场☆187Updated 2 years ago
- 应急响应资料收集☆91Updated 5 years ago
- 扫描存在CORS跨域漏洞的网站。☆92Updated 6 years ago
- SpringBoot Actuator未授权自动化利用,支持信息泄漏/RCE☆231Updated 4 years ago
- Shiro反序列化回显利用、内存shell、检查 Burp插件☆218Updated 3 years ago
- 🧬 辅助生成 XRay YAML POC☆272Updated 2 years ago
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.优化了一些东西。☆215Updated 3 years ago
- Struts2漏洞实例源码☆208Updated 4 years ago
- 域渗透脑图中文翻译版☆277Updated 4 years ago
- 代码审计知识点整理-php☆98Updated 5 years ago
- 📖《内网安全攻防-渗透测试实战指南》☆123Updated 5 years ago
- Demo code for post <Restrictions of JNDI Manipulation RCE & Bypass>☆265Updated 3 years ago