zbazztian / codeql-debug
☆70Updated 2 years ago
Alternatives and similar repositories for codeql-debug:
Users that are interested in codeql-debug are comparing it to the libraries listed below
- Unofficial Dockerfile and scripts for building CodeQL databases for the OpenJDK☆48Updated last year
- PaddingZip is a tool that you can craft a zip file that contains the padding characters between the file content.☆62Updated 2 years ago
- GreHack 2021 CodeQL for Java workshop☆75Updated 3 years ago
- Java After-Deserialization Attack☆79Updated 3 years ago
- 收集规则☆30Updated 2 years ago
- bypass JEP290 RaspHook code☆62Updated 4 years ago
- My CodeQL queries collection☆96Updated last year
- ☆41Updated 3 years ago
- Collection of CTF Web challenges I made☆52Updated last year
- 《深入理解DAST动态应用程序安全测试》Dynamic Application Security Testing.☆49Updated 2 years ago
- Java agent without file 无文件的Java agent☆78Updated 2 years ago
- CVE-2020-36179~82 Jackson-databind SSRF&RCE☆80Updated 4 years ago
- notes☆26Updated 2 years ago
- ☆58Updated 4 years ago
- cve-2022-34169 延伸出的Jdk Xalan的payload自动生成工具,可根据不同的Jdk生成出其所对应的xslt文件☆89Updated 2 years ago
- Low-level RASP: Protecting Applications Implemented in High-level Programming Languages☆57Updated last year
- 打CTF实在厌倦了找利用链,就知道一个fastjson的版本,一堆依赖找啊找,头都疼。为了解决这个烦恼,用了卓卓师傅的fastjson黑名单工具和库,自己改造了一下。☆32Updated 5 years ago
- CodeQL中文资料和常见使用解释。Chinese version of Codeql documents☆9Updated 4 years ago
- Spring Cloud Netflix Hystrix Dashboard template resolution vulnerability CVE-2021-22053☆37Updated 2 years ago
- ☆78Updated 4 years ago
- 个人用于在自动化挖掘gadget时,方便查找gadget chains中class所在jar包,以助于便捷审计测试gadget有效性的那么一个小工具。☆60Updated 4 years ago
- CodeQL extractor for java, which don't need to compile java source☆10Updated last year
- Custom / Experimental CodeQL queries☆37Updated 2 years ago
- 收录go语言编写的项目、框架和组件出现的cve,或者一些相关的利用方式的文章☆37Updated 2 years ago
- solution to buggyLoader of 0CTF/TCTF 2021 Finals☆20Updated 3 years ago
- nativeRasp that can hook native methods☆24Updated last year
- JAVA IAST Example☆48Updated 3 years ago
- ☆71Updated 2 years ago
- 记录各语言、框架中危险的sink,个人代码审计、漏洞研究使用。☆115Updated 3 years ago
- CodeQL 寻找 JNDI利用 Lookup接口☆163Updated 2 years ago