Thanks to visit codestin.com
Credit goes to github.com

Skip to content
View Zer0Bs's full-sized avatar

Block or report Zer0Bs

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
14 results for forked starred repositories
Clear filter

Burp被动扫描流量转发插件

Java 81 12 Updated Jul 18, 2024

一个利用ASM对字节码进行污点传播分析的静态代码审计应用(添加了大量代码注释,适合大家进行源码学习)。也加入了挖掘Fastjson反序列化gadget chains和SQLInject(JdbcTemplate、MyBatis、JPA、Hibernate、原生jdbc等)静态检测功能。并且加入了很多功能以方便进行漏洞自动化挖掘。

Java 454 59 Updated Mar 24, 2022

80+ Gadgets(30 More than ysoserial). JNDI-Injection-Exploit-Plus is a tool for generating workable JNDI links and provide background services by starting RMI server,LDAP server and HTTP server.

Java 8 1 Updated Feb 15, 2024

Automatic monitor github cve using Github Actions

Python 10 8 Updated Dec 16, 2024

对照实战场景梳理较通用的 Java Rce 相关漏洞的利用方式

Java 1 Updated Sep 13, 2023

http-socks 隧道

Go 1 Updated Feb 23, 2023

一款针对Vcenter的综合利用工具,包含目前最主流的CVE-2021-21972、CVE-2021-21985以及CVE-2021-22005、One Access的CVE-2022-22954、CVE-2022-22972/31656以及log4j,提供一键上传webshell,命令执行或者上传公钥使用SSH免密连接

Go 12 2 Updated Dec 18, 2023

Share Things Related to Java - Java安全漫谈笔记相关内容

Java 1 Updated Mar 17, 2022

UAC bypass for x64 Windows 7 - 11(无弹窗版)

C++ 280 27 Updated Sep 5, 2022

各种CMS、各种平台、各种系统、各种软件漏洞的EXP、POC 该项目将不断更新

C 269 97 Updated Mar 30, 2022

(批量化改造)sharpwmi是一个基于rpc的横向移动工具,具有上传文件和执行命令功能。

C# 109 11 Updated Jan 8, 2021

给woodpecker框架量身定制的ysoserial

Java 1 Updated Dec 31, 2021

A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.

Java 182 27 Updated Apr 23, 2021

一个全新的敏感文件发现工具

Go 269 54 Updated Jan 5, 2021