welk1n's repositories

JNDI-Injection-Exploit

JNDI注入测试工具(A tool which generates JNDI links can start several servers to exploit JNDI Injection vulnerability,like Jackson,Fastjson,etc)

Language:JavaLicense:MITStargazers:2488Issues:27Issues:7

JNDI-Injection-Bypass

Some payloads of JNDI Injection in JDK 1.8.0_191+

FastjsonPocs

一些结合第三方组件的Fastjson POC,在1.2.48以后版本中陆续被添加至黑名单。

ReverseShell-Java

Generating payloads to reverse shell in different contexts of java.

Language:JavaStargazers:42Issues:2Issues:0

exploiting-groovy-in-Java

Some payloads of exploiting groovy in java.

Language:JavaStargazers:9Issues:2Issues:0

BaRMIe

Java RMI enumeration and attack tool.

Language:JavaLicense:MITStargazers:5Issues:2Issues:0

jvm-sandbox

Real - time non-invasive AOP framework container based on JVM

Language:JavaLicense:LGPL-3.0Stargazers:3Issues:1Issues:0

SpringBootVulExploit

SpringBoot 相关漏洞学习资料,利用方法和技巧合集,黑盒安全评估 checklist

Language:JavaStargazers:3Issues:2Issues:0

CobaltStrike

CobaltStrike's source code

Stargazers:1Issues:0Issues:0

ipdb-java

IPIP.net officially supported IP database ipdb format parsing library

Language:JavaLicense:Apache-2.0Stargazers:1Issues:2Issues:0

find-sec-bugs

The SpotBugs plugin for security audits of Java web applications and Android applications. (Also work with Kotlin, Groovy and Scala projects)

Language:JavaLicense:LGPL-3.0Stargazers:0Issues:1Issues:0

gadgetinspector

A byte code analyzer for finding deserialization gadget chains in Java applications

Language:JavaLicense:MITStargazers:0Issues:1Issues:0

homebrew-core

🍻 Default formulae for the missing package manager for macOS

Language:RubyLicense:BSD-2-ClauseStargazers:0Issues:1Issues:0

jailbreak

Jailbreak

Language:C++License:BSD-2-ClauseStargazers:0Issues:2Issues:0
Language:JavaLicense:MITStargazers:0Issues:1Issues:0

nps

一款轻量级、功能强大的内网穿透代理服务器。支持tcp、udp流量转发,支持内网http代理、内网socks5代理,同时支持snappy压缩、站点保护、加密传输、多路复用、header修改等。支持web图形化管理,集成多用户模式。

Language:GoLicense:GPL-3.0Stargazers:0Issues:1Issues:0

OSfooler-ng

OSfooler-ng prevents remote active/passive OS fingerprinting by tools like nmap or p0f

Language:PythonLicense:GPL-3.0Stargazers:0Issues:1Issues:0

Potatso

Potatso is an iOS client that implements Shadowsocks proxy with the leverage of NetworkExtension framework. ***This project is unmaintained, try taking a look at this fork https://github.com/shadowcoel/shadowcoel instead.

License:GPL-3.0Stargazers:0Issues:0Issues:0
Stargazers:0Issues:3Issues:0

ysoserial

A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.

Language:JavaLicense:MITStargazers:0Issues:1Issues:0