wupco / PHP_INCLUDE_TO_SHELL_CHAR_DICT
☆328Updated 2 years ago
Alternatives and similar repositories for PHP_INCLUDE_TO_SHELL_CHAR_DICT:
Users that are interested in PHP_INCLUDE_TO_SHELL_CHAR_DICT are comparing it to the libraries listed below
- dotnet 反序列化学习笔记☆447Updated last year
- A CLI to exploit parameters vulnerable to PHP filter chain error based oracle.☆260Updated 8 months ago
- exec BashCommand with only ! # $ ' ( ) < \ { } just 10 charset used in Bypass or CTF☆226Updated 6 months ago
- Automatically converts Python source code to Pickle opcode☆140Updated last month
- 闭源系统半自动漏洞挖掘工具,针对 jar/war/zip 进行静态代码分析,输出从source到sink的可达路径。LLM将验证路径可达性,并根据上下文给出该路径可信分数☆407Updated last month
- 80+ Gadgets(30 More than ysoserial). JNDI-Injection-Exploit-Plus is a tool for generating workable JNDI links and provide background serv…☆763Updated 7 months ago
- CTF-Java-Gadget专注于收集CTF中Java赛题的反序列化片段☆242Updated 2 months ago
- A rouge mysql server supports reading files from most mysql libraries of multiple programming languages.☆704Updated 2 years ago
- Collections of CTF-WEB-challs mainly for review purpose.☆31Updated last year
- ☆501Updated 2 years ago
- javaDeserializeLabs☆66Updated last year
- spring boot Fat Jar 任意写文件漏洞到稳定 RCE 利用技巧☆693Updated 3 years ago
- CTF中任意文件读取的fuzz列表 (Arbitrary file read fuzz list in CTF)☆259Updated 2 years ago
- CodeQL extractor for java, which don't need to compile java source☆332Updated 2 years ago
- ☆122Updated 8 months ago
- JDBC Connection URL Attack☆401Updated 3 years ago
- 【Hello-CTF labs】一个想帮你收集所有RCE技巧的靶场。☆209Updated 3 months ago
- A plugin for CTFd which allow your users to deploy a standalone instance for challenges.☆233Updated 10 months ago
- JNDI 注入利用工具, 支持 RMI, LDAP 和 LDAPS 协议, 包含多种高版本 JDK 绕过方式 | A JNDI injection exploit tool that supports RMI, LDAP and LDAPS protocols, inclu…☆375Updated 4 months ago
- 自动化的 Python 沙箱逃逸 payload bypass 框架 / Automated Python Sandbox Escape Payload Bypass Framework☆64Updated last month
- 利用链、漏洞检测工具☆367Updated 6 months ago
- ysoserial修改版,着重修改ysoserial.payloads.util.Gadgets.createTemplatesImpl使其可以通过引入自定义class的形式来执行命令、内存马、反序列化回显。☆654Updated last year
- 关于我在CTF中的所有东西☆347Updated 5 months ago
- Deployment template for docker target machine in ctf for CTFd and other platforms that support dynamic flags☆276Updated 5 months ago
- Linux Eelvation(持续更新)☆393Updated 2 years ago
- Common Exploitation Techniques for Java RCE Vulnerabilities in Real-World Scenarios | 实战场景较通用的 Java Rce 相关漏洞的利用方式☆476Updated 4 months ago
- Java RCE 回显测试代码☆1,006Updated 4 years ago
- A repository to record my usual studies☆20Updated 2 years ago
- A lab to help you learning SSTI☆100Updated last year
- Archive of attachments from previous CTF competitions☆96Updated last year