Skip to content
View d0ub1ec0d3's full-sized avatar

Block or report d0ub1ec0d3

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
37 stars written in Java
Clear filter

MCP Server for Ghidra

Java 8,692 858 Updated Jun 23, 2025

SpringBoot 相关漏洞学习资料,利用方法和技巧合集,黑盒安全评估 check list

Java 6,132 1,319 Updated Mar 10, 2021

HaE - Highlighter and Extractor, Empower ethical hacker for efficient operations.

Java 4,162 303 Updated Apr 28, 2026

Java安全相关的漏洞和技术demo,原生Java、Fastjson、Jackson、Hessian2、XML反序列化漏洞利用和Spring、Dubbo、Shiro、CAS、Tomcat、RMI、Nexus等框架\中间件\功能的exploits以及Java Security Manager绕过、Dubbo-Hessian2安全加固等等实践代码。

Java 2,696 496 Updated Mar 14, 2024

A Burp Suite extension that integrates OpenAI's GPT to perform an additional passive scan for discovering highly bespoke vulnerabilities and enables running traffic-based analysis of any type.

Java 2,290 282 Updated Jun 9, 2024

Share Things Related to Java - Java安全漫谈笔记相关内容

Java 2,009 229 Updated Apr 9, 2025

一款基于BurpSuite的被动式shiro检测插件

Java 1,799 159 Updated Dec 14, 2022

HeapDump敏感信息提取工具

Java 1,653 147 Updated Dec 15, 2025

A CAT called tabby ( Code Analysis Tool )

Java 1,647 181 Updated Jan 17, 2026

WebSocket 内存马/Webshell,一种新型内存马/WebShell技术

Java 1,494 230 Updated Apr 10, 2023

一款专注于 Java 主流 Web 中间件的内存马快速生成工具,致力于简化安全研究人员和红队成员的工作流程,提升攻防效率

Java 1,437 146 Updated Apr 26, 2026

Fastjson vulnerability quickly exploits the framework(fastjson漏洞快速利用框架)

Java 1,394 176 Updated Dec 16, 2022

攻防演练过程中,我们通常会用浏览器访问一些资产,但很多未授权/敏感信息/越权隐匿在已访问接口过html、JS文件等,该插件能让我们发现未授权/敏感信息/越权/登陆接口等。

Java 1,391 76 Updated Oct 3, 2024

记录一下 Java 安全学习历程,也算是半条学习路线了

Java 1,345 123 Updated Jun 26, 2025

Nuclei plugin for BurpSuite

Java 1,329 133 Updated Oct 22, 2025

一款基于BurpSuite的被动式FastJson检测插件

Java 1,244 131 Updated Oct 1, 2022

Java RCE 回显测试代码

Java 1,015 174 Updated Oct 15, 2020

burp验证码识别接口调用插件

Java 925 119 Updated Jun 17, 2022

Nacos JRaft Hessian 反序列化 RCE 加载字节码 注入内存马 不出网利用

Java 850 91 Updated Jul 7, 2023

从wooyun中提取的payload,以及burp插件

Java 839 151 Updated Jun 17, 2022

OWASP Benchmark is a test suite designed to verify the speed and accuracy of software vulnerability detection tools. A fully runnable web app written in Java, it supports analysis by Static (SAST),…

Java 793 1,402 Updated Apr 27, 2026

spring boot Fat Jar 任意写文件漏洞到稳定 RCE 利用技巧

Java 754 74 Updated Apr 14, 2021

A Burp Suite Extension that try to find all sub-domain, similar-domain and related-domain of an organization automatically! 基于流量自动收集整个企业或组织的子域名、相似域名、相关域名的burp插件

Java 675 127 Updated Jul 16, 2023

Spring漏洞综合利用工具

Java 675 59 Updated Jul 5, 2023

用于host碰撞而生的小工具,专门检测渗透中需要绑定hosts才能访问的主机或内部系统

Java 671 66 Updated Jun 13, 2024

JNDI在java高版本的利用工具,FUZZ利用链

Java 602 70 Updated Oct 8, 2022

互联网厂商API利用工具。

Java 570 49 Updated Sep 13, 2024

WebLogic利用CVE-2020-2883打Shiro rememberMe反序列化漏洞,一键注册蚁剑filter内存shell

Java 534 61 Updated Aug 25, 2020

多功能 java agent 内存马

Java 526 63 Updated Oct 8, 2023
Next