Skip to content
View sunscan's full-sized avatar

Block or report sunscan

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
18 stars written in Java
Clear filter

A Java 8+ Jar & Android APK Reverse Engineering Suite (Decompiler, Editor, Debugger & More)

Java 15,284 1,207 Updated Oct 6, 2025

A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.

Java 8,571 1,843 Updated Mar 31, 2024

A cross-platform GUI and CLI app for automatically saving SHSH blobs

Java 1,871 161 Updated Oct 6, 2025

TLS-Attacker is a Java-based framework for analyzing TLS libraries. It can be used to manually test TLS clients and servers or as as a software library for more advanced tools.

Java 856 143 Updated Oct 2, 2025

Java RMI enumeration and attack tool.

Java 743 100 Updated Sep 28, 2017

WS-Attacker is a modular framework for web services penetration testing. It is developed by the Chair of Network and Data Security, Ruhr University Bochum (https://nds.rub.de/ ) and the Hackmanit G…

Java 486 116 Updated Oct 3, 2024

RMIScout uses wordlist and bruteforce strategies to enumerate Java RMI functions and exploit RMI parameter unmarshalling vulnerabilities

Java 443 60 Updated Sep 7, 2022

Sign.jar automatically signs an apk with the Android test certificate.

Java 424 118 Updated Mar 18, 2020

PowerShell script and Java code to decrypt WebLogic passwords

Java 245 79 Updated Jul 20, 2015

JNDI Attacking Tool

Java 243 50 Updated Jul 11, 2022

Burp Suite Logger++: Log activities of all the tools in Burp Suite

Java 182 30 Updated Jun 12, 2024

Burplay is a Burp Extension allowing for replaying any number of requests using same modifications definition. Its main purpose is to aid in searching for Privilege Escalation issues.

Java 83 24 Updated Sep 19, 2017

Native Java-based deserialization exploit for WebLogic T3 (and T3S) listeners.

Java 35 12 Updated Mar 2, 2020

This changes the style of Burp Suite's Repeater tabs to help the testers

Java 29 13 Updated Jul 3, 2019

JNDI discovery made easy

Java 5 1 Updated Feb 12, 2016

https://github.com/CaledoniaProject/AxisInvoker

Java 4 2 Updated Dec 2, 2019

{903} password decoder - used in oc4j configuration files

Java 3 1 Updated Aug 22, 2015