Skip to content
View ssrsec's full-sized avatar
🎯
Focusing
🎯
Focusing

Organizations

@Java-Chains

Block or report ssrsec

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
64 stars written in Java
Clear filter

SpringBoot 相关漏洞学习资料,利用方法和技巧合集,黑盒安全评估 check list

Java 5,816 1,304 Updated Mar 10, 2021
Java 3,417 682 Updated Dec 11, 2022

A Simple android remote administration tool using sockets. It uses java on the client side and python on the server side

Java 3,265 1,028 Updated Jul 17, 2024

Java安全相关的漏洞和技术demo,原生Java、Fastjson、Jackson、Hessian2、XML反序列化漏洞利用和Spring、Dubbo、Shiro、CAS、Tomcat、RMI、Nexus等框架\中间件\功能的exploits以及Java Security Manager绕过、Dubbo-Hessian2安全加固等等实践代码。

Java 2,610 495 Updated Mar 14, 2024

Java web common vulnerabilities and security code which is base on springboot and spring security

Java 2,426 655 Updated Dec 2, 2024

一款高性能 HTTP 代理隧道工具 | A high-performance http proxy tunneling tool

Java 2,197 202 Updated Nov 7, 2024

Burp suite 分块传输辅助插件

Java 1,945 296 Updated Feb 23, 2022

a rep for documenting my study, may be from 0 to 0.1

Java 1,933 295 Updated Oct 11, 2024

Share Things Related to Java - Java安全漫谈笔记相关内容

Java 1,784 211 Updated Aug 12, 2024

一款支持自定义的 Java 内存马生成工具|A customizable Java in-memory webshell generation tool.

Java 1,719 192 Updated Nov 16, 2024

Spring Boot JAR 安全加密运行工具,支持的原生JAR。

Java 1,665 480 Updated Apr 25, 2024

JNDIExploit or a ysoserial.

Java 1,609 193 Updated Nov 12, 2024

服务端配置错误情况下用于伪造ip地址进行测试的Burp Suite插件

Java 1,474 232 Updated Sep 29, 2022

Burp extension to evade TLS fingerprinting. Bypass WAF, spoof any browser.

Java 1,277 78 Updated Nov 10, 2024

Jar Analyzer - 一个JAR包分析工具,批量分析,SCA漏洞分析,方法调用关系搜索,字符串搜索,Spring组件分析,信息泄露检查,CFG程序分析,JVM栈帧分析,进阶表达式搜索,字节码指令级的动态调试分析,反编译JAR包一键导出,一键提取序列化数据恶意代码,一键分析BCEL字节码

Java 1,226 108 Updated Dec 8, 2024

A helpful Java Deserialization exploit framework.

Java 1,183 150 Updated Jun 20, 2024

RiskScanner 是开源的多云安全合规扫描平台,基于 Cloud Custodian 和 Nuclei 引擎,实现对主流公(私)有云资源的安全合规扫描和漏洞扫描。

Java 1,149 185 Updated Apr 14, 2023

A malicious LDAP server for JNDI injection attacks

Java 1,016 221 Updated Sep 28, 2023

一个用于前端加密Fuzz的Burp Suite插件

Java 1,013 128 Updated Mar 6, 2020

Java RCE 回显测试代码

Java 996 177 Updated Oct 15, 2020

Nacos漏洞综合利用GUI工具,集成了默认口令漏洞、SQL注入漏洞、身份认证绕过漏洞、反序列化漏洞的检测及其利用

Java 971 72 Updated Aug 2, 2024

通过jsp脚本扫描java web Filter/Servlet型内存马

Java 855 123 Updated Mar 9, 2023

对权限绕过自动化bypass的burpsuite插件

Java 851 46 Updated Jun 21, 2024

java内存对象搜索辅助工具

Java 789 85 Updated Sep 23, 2022

xia Liao(瞎料)burp插件 用于Windows在线进程/杀软识别 与 web渗透注册时,快速生成需要的资料用来填写,资料包含:姓名、手机号、身份证、统一社会信用代码、组织机构代码、银行卡,以及各类web语言的hello world输出和生成弱口令字典等。

Java 604 42 Updated Jul 9, 2024

SpringScan 漏洞检测 Burp插件

Java 584 47 Updated Nov 14, 2023

互联网厂商API利用工具。

Java 528 52 Updated Sep 13, 2024

Common Exploitation Techniques for Java RCE Vulnerabilities in Real-World Scenarios | 实战场景较通用的 Java Rce 相关漏洞的利用方式

Java 477 54 Updated Sep 29, 2024

MySQL实时监控工具(代码审计/黑盒/白盒审计辅助工具)

Java 463 89 Updated Jun 21, 2022

通过 JAVA AGENT 查杀内存马,提供简易方便的 GUI 界面,一键反编译目标环境内存马进行分析,支持远程查杀和本地查杀(注意:仅供本地复现分析学习,请勿用于正式和生产环境)

Java 450 78 Updated Dec 4, 2024
Next