deserialization-vulnerability topic

List deserialization-vulnerability repositories

springcore-0day-en

104
Stars
36
Forks
Watchers

Everything I needed to understand what was going on with "Spring4Shell" - translated source materials, exploit, links to demo apps, and more.

Peas create serialized payload for deserialization RCE attack on python driven applications where pickle ,pyYAML, ruamel.yaml or jsonpickle module is used for deserialization of serialized data. I wil...

FastjsonScan

933
Stars
93
Forks
10
Watchers

Fastjson扫描器,可识别版本、依赖库、autoType状态等。A tool to distinguish fastjson ,version and dependency

AiCSA

57
Stars
6
Forks
Watchers

GPT AiCSA(Code security audit),SAST(Static Application Security Testing,静态应用程序安全测试),JAR security analysis, static vulnerability and vulnerability analysis of various programming languag...

ysogate

43
Stars
1
Forks
Watchers

Java反序列化/JNDI注入利用工具,支持多种高版本bypass,支持回显/内存马等多种扩展利用。