Repository

Repository di welk1n

Java RMI enumeration and attack tool.

Ultimo commit 28 set 2017

 (5 star) (2 fork) (0 issue indicizzate) (0 good first issue aperte)

一些结合第三方组件的Fastjson POC,在1.2.48以后版本中陆续被添加至黑名单。

Ultimo commit 29 ott 2019

 (56 star) (3 fork) (0 issue indicizzate) (0 good first issue aperte)

Some payloads of JNDI Injection in JDK 1.8.0_191+

Ultimo commit 26 mar 2020

 (483 star) (81 fork) (0 issue indicizzate) (0 good first issue aperte)

JNDI注入测试工具(A tool which generates JNDI links can start several servers to exploit JNDI Injection vulnerability,like Jackson,Fastjson,etc)

Ultimo commit 22 mar 2023

 (2328 star) (715 fork) (0 issue indicizzate) (0 good first issue aperte)

OSfooler-ng prevents remote active/passive OS fingerprinting by tools like nmap or p0f

Ultimo commit 20 mar 2023

 (0 star) (0 fork) (0 issue indicizzate) (0 good first issue aperte)

Potatso is an iOS client that implements Shadowsocks proxy with the leverage of NetworkExtension framework. ***This project is unmaintained, try taking a look at this fork https://github.com/shadowcoel/shadowcoel instead.

Ultimo commit 1 ott 2018

 (0 star) (0 fork) (0 issue indicizzate) (0 good first issue aperte)

Generating payloads to reverse shell in different contexts of java.

Ultimo commit 16 ott 2019

 (51 star) (10 fork) (0 issue indicizzate) (0 good first issue aperte)

SpringBoot 相关漏洞学习资料,利用方法和技巧合集,黑盒安全评估 checklist

Ultimo commit 6 giu 2020

 (3 star) (4 fork) (0 issue indicizzate) (0 good first issue aperte)

Ultimo commit 6 nov 2019

 (0 star) (0 fork) (0 issue indicizzate) (0 good first issue aperte)

Some payloads of exploiting groovy in java.

Ultimo commit 31 mag 2019

 (10 star) (5 fork) (0 issue indicizzate) (0 good first issue aperte)

The SpotBugs plugin for security audits of Java web applications and Android applications. (Also work with Kotlin, Groovy and Scala projects)

Ultimo commit 7 mag 2019

 (0 star) (1 fork) (0 issue indicizzate) (0 good first issue aperte)

A byte code analyzer for finding deserialization gadget chains in Java applications

Ultimo commit 6 dic 2019

 (0 star) (1 fork) (0 issue indicizzate) (0 good first issue aperte)

🍻 Default formulae for the missing package manager for macOS

Ultimo commit 13 ott 2020

 (0 star) (0 fork) (0 issue indicizzate) (0 good first issue aperte)

IPIP.net officially supported IP database ipdb format parsing library

Ultimo commit 17 set 2019

 (1 star) (0 fork) (0 issue indicizzate) (0 good first issue aperte)

Jailbreak

Ultimo commit 28 dic 2015

 (0 star) (0 fork) (0 issue indicizzate) (0 good first issue aperte)

Real - time non-invasive AOP framework container based on JVM

Ultimo commit 7 apr 2019

 (3 star) (2 fork) (0 issue indicizzate) (0 good first issue aperte)

Ultimo commit 1 nov 2018

 (0 star) (0 fork) (0 issue indicizzate) (0 good first issue aperte)

一款轻量级、功能强大的内网穿透代理服务器。支持tcp、udp流量转发,支持内网http代理、内网socks5代理,同时支持snappy压缩、站点保护、加密传输、多路复用、header修改等。支持web图形化管理,集成多用户模式。

Ultimo commit 21 dic 2019

 (0 star) (0 fork) (0 issue indicizzate) (0 good first issue aperte)

tart, but with custom AVPBooter ROM, serial I/O, DFU mode, GDB debugging (port 8000), SEP debugging (port 8001), and panic halting. See help menus for `tart create` and `tart run` for more info. Requires SIP/AMFI to be disabled for required entitlement and "csrutil allow-research-guests enable"

Ultimo commit 25 feb 2026

 (0 star) (0 fork) (0 issue indicizzate) (0 good first issue aperte)

A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.

Ultimo commit 7 set 2019

 (0 star) (0 fork) (0 issue indicizzate) (0 good first issue aperte)