13 results found Sort:

195
1.6k
gpl-3.0
68
JNDIExploit or a ysoserial.
Created 2022-07-04
93 commits to main branch, last one about a month ago
80+ Gadgets(30 More than ysoserial). JNDI-Injection-Exploit-Plus is a tool for generating workable JNDI links and provide background services by starting RMI server,LDAP server and HTTP server.
Created 2022-07-18
28 commits to master branch, last one 6 months ago
76
729
apache-2.0
11
Antenna是58同城安全团队打造的一款辅助安全从业人员验证网络中多种漏洞是否存在以及可利用性的工具。其基于带外应用安全测试(OAST)通过任务的形式,将不同漏洞场景检测能力通过插件的形式进行集合,通过与目标进行out-bind的数据通信方式进行辅助检测。
Created 2022-06-15
506 commits to main branch, last one about a year ago
54
477
unknown
6
Common Exploitation Techniques for Java RCE Vulnerabilities in Real-World Scenarios | 实战场景较通用的 Java Rce 相关漏洞的利用方式
Created 2023-08-18
95 commits to main branch, last one 2 months ago
25
348
unknown
5
JNDI 注入利用工具, 支持 RMI, LDAP 和 LDAPS 协议, 包含多种高版本 JDK 绕过方式 | A JNDI injection exploit tool that supports RMI, LDAP and LDAPS protocols, including a variety of methods to bypass higher-version JDK
Created 2023-11-06
49 commits to main branch, last one 3 months ago
24
300
unknown
4
一款用于JNDI注入利用的工具,大量参考/引用了Rogue JNDI项目的代码,支持直接植入内存shell,并集成了常见的bypass 高版本JDK的方式,适用于与自动化工具配合使用。
Created 2021-10-22
16 commits to master branch, last one 2 years ago
60
283
unknown
6
一个LDAP请求监听器,摆脱dnslog平台
Created 2021-12-11
19 commits to main branch, last one about a year ago
Tool that runs a test to check whether one of your applications is affected by the recent vulnerabilities in log4j: CVE-2021-44228 and CVE-2021-45046
Created 2021-12-13
40 commits to master branch, last one 8 months ago
17
70
gpl-3.0
2
Log4j jndi injection fuzz tool
Created 2021-12-14
16 commits to main branch, last one 2 years ago
Abuse Log4J CVE-2021-44228 to patch CVE-2021-44228 in vulnerable Minecraft game sessions to prevent exploitation in the session :)
Created 2021-12-12
2 commits to master branch, last one 3 years ago
19
56
gpl-3.0
4
Check, exploit, generate class, obfuscate, TLS, ACME about log4j2 vulnerability in one Go program.
Created 2021-12-16
70 commits to main branch, last one 2 years ago
pyyso is a Python package that generate java serialized poc. Including CommonsCollections1-7, JDK7u21, JDK8u20, ldap for jndi, shiro-550, CommonsBeanutils1 no cc, JRMPClient, high version JDK Bypass, ...
Created 2022-03-18
10 commits to master branch, last one 2 years ago
12
38
unknown
2
《JNDI-深入理解Java万恶之源》
Created 2021-12-11
34 commits to main branch, last one about a year ago