wupco / PHP_INCLUDE_TO_SHELL_CHAR_DICT
☆333Updated 2 years ago
Alternatives and similar repositories for PHP_INCLUDE_TO_SHELL_CHAR_DICT:
Users that are interested in PHP_INCLUDE_TO_SHELL_CHAR_DICT are comparing it to the libraries listed below
- dotnet 反序列化学习笔记☆453Updated last year
- A CLI to exploit parameters vulnerable to PHP filter chain error based oracle.☆296Updated 10 months ago
- 80+ Gadgets(30 More than ysoserial). JNDI-Injection-Exploit-Plus is a tool for generating workable JNDI links and provide background serv…☆782Updated 10 months ago
- Automatically converts Python source code to Pickle opcode☆144Updated 3 months ago
- exec BashCommand with only ! # $ ' ( ) < \ { } just 10 charset used in Bypass or CTF☆229Updated 8 months ago
- spring boot Fat Jar 任意写文件漏洞到稳定 RCE 利用技巧☆705Updated 4 years ago
- 关于我在CTF中的所有东西☆372Updated 7 months ago
- JDBC Connection URL Attack☆408Updated 3 years ago
- 闭源系统半自动漏洞挖掘工具,针对 jar/war/zip 进行静态代 码分析,输出从source到sink的可达路径。LLM将验证路径可达性,并根据上下文给出该路径可信分数☆433Updated 3 weeks ago
- Collections of CTF-WEB-challs mainly for review purpose.☆30Updated last year
- A rouge mysql server supports reading files from most mysql libraries of multiple programming languages.☆713Updated 2 years ago
- CTF中任意文件读取的fuzz列表 (Arbitrary file read fuzz list in CTF)☆260Updated 3 years ago
- ☆143Updated 10 months ago
- CodeQL extractor for java, which don't need to compile java source☆339Updated 2 years ago
- 利用链、漏洞检测工具☆367Updated 8 months ago
- A plugin for CTFd which allow your users to deploy a standalone instance for challenges.☆236Updated last year
- JNDI 注入利用工具, 支持 RMI, LDAP 和 LDAPS 协议, 包含多种高版本 JDK 绕过方式 | A JNDI injection exploit tool that supports RMI, LDAP and LDAPS protocols, inclu…☆405Updated 6 months ago
- javaDeserializeLabs☆67Updated 2 years ago
- CTF-Java-Gadget专注于收集CTF中Java赛题的反序列化片段☆250Updated 4 months ago
- 自动化的 Python 沙箱逃逸 payload bypass 框架 / Automated Python Sandbox Escape Payload Bypass Framework☆70Updated 4 months ago
- A repository to record my usual studies☆21Updated 2 years ago
- ☆505Updated 2 years ago
- Java RCE 回显测试代码☆1,011Updated 4 years ago
- Linux Eelvation(持续更新)☆396Updated 2 years ago
- Challenges of CTF Attack with Defense mode☆195Updated 2 years ago
- A lab to help you learning SSTI☆102Updated last year
- Exploits for CNEXT (CVE-2024-2961), a buffer overflow in the glibc's iconv()☆472Updated 6 months ago
- 记录学习codeql的过程☆378Updated last year
- ysoserial修改版,着重修改ysoserial.payloads.util.Gadgets.createTemplatesImpl使其可以通过引入自定义class的形式来执行命令、内存马、反序列化回显。☆681Updated last year
- redis ssrf gopher generater & redis ssrf to rce by master-slave-sync☆85Updated 4 years ago