wupco / PHP_INCLUDE_TO_SHELL_CHAR_DICT
☆328Updated last year
Alternatives and similar repositories for PHP_INCLUDE_TO_SHELL_CHAR_DICT:
Users that are interested in PHP_INCLUDE_TO_SHELL_CHAR_DICT are comparing it to the libraries listed below
- dotnet 反序列化学习笔记☆443Updated last year
- Automatically converts Python source code to Pickle opcode☆136Updated 2 weeks ago
- A CLI to exploit parameters vulnerable to PHP filter chain error based oracle.☆235Updated 7 months ago
- 80+ Gadgets(30 More than ysoserial). JNDI-Injection-Exploit-Plus is a tool for generating workable JNDI links and provide background serv…☆754Updated 6 months ago
- exec BashCommand with only ! # $ ' ( ) < \ { } just 10 charset used in Bypass or CTF☆224Updated 5 months ago
- CTF中任意文件读取的fuzz列表 (Arbitrary file read fuzz list in CTF)☆257Updated 2 years ago
- 闭源系统半自动漏洞挖掘工具,针对 jar/war/zip 进行静态代码分析,输出从source到sink的可达路径。LLM将验证路径可达性,并根据上下文给出该路径可信分数☆395Updated this week
- CTF-Java-Gadget专注于收集CTF中Java赛题的反序列化片段☆235Updated last month
- 关于我在CTF中的所有东西☆335Updated 3 months ago
- Linux Eelvation(持续更新)☆393Updated 2 years ago
- spring boot Fat Jar 任意写文件漏洞到稳定 RCE 利用技巧☆693Updated 3 years ago
- ysoserial修改版,着重修改ysoserial.payloads.util.Gadgets.createTemplatesImpl使其可以通过引入自定义class的形式来执行命令、内存马、反序列化回显。☆651Updated last year
- JNDI 注入利用工具, 支持 RMI, LDAP 和 LDAPS 协议, 包含多种高版本 JDK 绕过方式 | A JNDI injection exploit tool that supports RMI, LDAP and LDAPS protocols, inclu…☆360Updated 3 months ago
- JDBC Connection URL Attack☆397Updated 3 years ago
- Collections of CTF-WEB-challs mainly for review purpose.☆31Updated last year
- 【Hello-CTF labs】一个想帮你收集所有RCE技巧的靶场。☆204Updated 2 months ago
- CodeQL extractor for java, which don't need to compile java source☆329Updated 2 years ago
- A plugin for CTFd which allow your users to deploy a standalone instance for challenges.☆232Updated 9 months ago
- ☆497Updated 2 years ago
- A rouge mysql server supports reading files from most mysql libraries of multiple programming languages.☆700Updated 2 years ago
- 利用链、漏洞检测工具☆367Updated 5 months ago
- A lab to help you learning SSTI☆99Updated last year
- A repository to record my usual studies☆20Updated 2 years ago
- 自动化的 Python 沙箱逃逸 payload bypass 框架 / Automated Python Sandbox Escape Payload Bypass Framework☆59Updated 3 weeks ago
- Deployment template for docker target machine in ctf for CTFd and other platforms that support dynamic flags☆269Updated 3 months ago
- Redis 4.x/5.x RCE☆535Updated 4 years ago
- javaDeserializeLabs☆66Updated last year
- Exploits for CNEXT (CVE-2024-2961), a buffer overflow in the glibc's iconv()☆427Updated 3 months ago
- ☆92Updated 3 weeks ago