Skip to content
View MDhost's full-sized avatar

Block or report MDhost

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
22 stars written in Java
Clear filter

FASTJSON 2.0.x has been released, faster and more secure, recommend you upgrade.

Java 25,777 6,498 Updated Jul 16, 2024

A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.

Java 7,953 1,777 Updated Mar 31, 2024

SpringBoot 相关漏洞学习资料,利用方法和技巧合集,黑盒安全评估 check list

Java 5,855 1,306 Updated Mar 10, 2021

An xposed module that disables SSL certificate checking for the purposes of auditing an app with cert pinning

Java 4,947 806 Updated Sep 2, 2024

JNDI注入测试工具(A tool which generates JNDI links can start several servers to exploit JNDI Injection vulnerability,like Jackson,Fastjson,etc)

Java 2,646 728 Updated Mar 22, 2023

Java安全相关的漏洞和技术demo,原生Java、Fastjson、Jackson、Hessian2、XML反序列化漏洞利用和Spring、Dubbo、Shiro、CAS、Tomcat、RMI、Nexus等框架\中间件\功能的exploits以及Java Security Manager绕过、Dubbo-Hessian2安全加固等等实践代码。

Java 2,625 496 Updated Mar 14, 2024

溯光 (TrackRay) 3 beta⚡渗透测试框架(资产扫描|指纹识别|暴力破解|网页爬虫|端口扫描|漏洞扫描|代码审计|AWVS|NMAP|Metasploit|SQLMap)

Java 2,045 374 Updated Dec 16, 2023

Burp suite 分块传输辅助插件

Java 1,958 298 Updated Feb 23, 2022

Shiro550/Shiro721 一键化利用工具,支持多种回显方式

Java 1,917 298 Updated Jun 4, 2021

一款基于BurpSuite的被动式shiro检测插件

Java 1,705 155 Updated Dec 14, 2022

服务端配置错误情况下用于伪造ip地址进行测试的Burp Suite插件

Java 1,516 233 Updated Sep 29, 2022

Burp被动扫描流量转发插件

Java 1,421 170 Updated Jun 17, 2024

Fastjson vulnerability quickly exploits the framework(fastjson漏洞快速利用框架)

Java 1,303 173 Updated Dec 16, 2022

burp验证码识别接口调用插件

Java 890 120 Updated Jun 17, 2022

一个简单的Fastjson反序列化检测burp插件

Java 887 72 Updated Jun 18, 2021

sqlmap4burp++是一款兼容Windows,mac,linux多个系统平台的Burp与sqlmap联动插件

Java 762 80 Updated Nov 7, 2019

Unexpected information 是用于标记请求包中的一些敏感信息、JS接口和一些特殊字段的BurpSuite 插件。

Java 630 58 Updated Jan 4, 2021

Burpsuite-Plugins-Usage

Java 508 126 Updated Apr 7, 2020

pdf转word

Java 500 214 Updated Aug 29, 2022
Java 51 32 Updated Mar 25, 2015

S2-061 CVE-2020-17530

Java 29 8 Updated Dec 22, 2020

CVE-2020-2555

Java 14 13 Updated Mar 10, 2020