A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.
-
Updated
Mar 31, 2024 - Java
A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.
Fastjson vulnerability quickly exploits the framework(fastjson漏洞快速利用框架)
Fiora:漏洞PoC框架Nuclei的图形版。快捷搜索PoC、一键运行Nuclei。即可作为独立程序运行,也可作为burp插件使用。
Alibaba-Nacos-Unauthorized/ApacheDruid-RCE_CVE-2021-25646/MS-Exchange-SSRF-CVE-2021-26885/Oracle-WebLogic-CVE-2021-2109_RCE/RG-CNVD-2021-14536/RJ-SSL-VPN-UltraVires/Redis-Unauthorized-RCE/TDOA-V11.7-GetOnlineCookie/VMware-vCenter-GetAnyFile/yongyou-GRP-U8-XXE/Oracle-WebLogic-CVE-2020-14883/Oracle-WebLogic-CVE-2020-14882/Apache-Solr-GetAnyFile/F5…
🐱💻 ✂️ 🤬 CVE-2021-44228 - LOG4J Java exploit - WAF bypass tricks
DeepfakeHTTP is a web server that uses HTTP dumps as a source for responses.
Sample codes written for the Hackers to Hackers Conference magazine 2017 (H2HC).
Parent Android app for School Bus Tracking System Project.
Java Object Deserialization on Android
Contact Tracing BLE sniffer PoC
Dockerized POC for CVE-2022-42889 Text4Shell
A Docker based LDAP RCE exploit demo for CVE-2021-44228 Log4Shell
Expolit Lists. 相关集合💥💥💥 ;) 用友NC反序列化/ CTF/ Java Deserialization/Shiro Vulns/ CNVD or CVE Vulns/ Log4j2/ Hikvision-decrypter...✨✨✨
Shows an example on how to use AxonFramework in conjunction with microprofile on quarkus
Very simplified shop sales system made in a microservices architecture using quarkus
Simple PoC for demonstrating Race Conditions on Websockets
Proof of Concept for the Apache commons-text vulnerability CVE-2022-42889.
Add a description, image, and links to the poc topic page so that developers can more easily learn about it.
To associate your repository with the poc topic, visit your repo's landing page and select "manage topics."