Skip to content
View sobinge's full-sized avatar

Block or report sobinge

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
58 stars written in Java
Clear filter

Free universal database tool and SQL client

Java 49,644 4,118 Updated Apr 18, 2026

Dex to Java decompiler

Java 48,128 5,495 Updated Apr 14, 2026

A tool for reverse engineering Android apk files

Java 24,301 3,910 Updated Apr 15, 2026

A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.

Java 8,845 1,852 Updated Dec 4, 2025

OWASP dependency-check is a software composition analysis utility that detects publicly disclosed vulnerabilities in application dependencies.

Java 7,504 1,397 Updated Apr 17, 2026

一个漏洞 PoC 知识库。A knowledge base for vulnerability PoCs(Proof of Concept), with 1k+ vulnerabilities.

Java 4,925 1,013 Updated Mar 23, 2026

JNDI注入测试工具(A tool which generates JNDI links can start several servers to exploit JNDI Injection vulnerability,like Jackson,Fastjson,etc)

Java 2,796 737 Updated Mar 22, 2023

Java web common vulnerabilities and security code which is base on springboot and spring security

Java 2,659 762 Updated Dec 2, 2024

红蓝对抗以及护网相关工具和资料,内存shellcode(cs+msf)和内存马查杀工具

Java 2,583 574 Updated Mar 8, 2026

shiro反序列化漏洞综合利用,包含(回显执行命令/注入内存马)修复原版中NoCC的问题 https://github.com/j1anFen/shiro_attack

Java 2,463 284 Updated Apr 12, 2026

APIKit:Discovery, Scan and Audit APIs Toolkit All In One.

Java 2,260 181 Updated Apr 2, 2024

一款支持自定义的 Java 内存马生成工具|A customizable Java in-memory webshell generation tool.

Java 2,180 234 Updated Aug 21, 2025

domain_hunter的高级版本,SRC挖洞、HW打点之必备!自动化资产收集;快速Title获取;外部工具联动;等等

Java 2,122 209 Updated Apr 10, 2026

溯光 (TrackRay) 3 beta⚡渗透测试框架(资产扫描|指纹识别|暴力破解|网页爬虫|端口扫描|漏洞扫描|代码审计|AWVS|NMAP|Metasploit|SQLMap)

Java 2,078 367 Updated Dec 16, 2023

Jar Analyzer - 一个 JAR 包 GUI 分析工具,方法调用关系搜索,方法调用链 DFS 算法分析,模拟 JVM 的污点分析验证 DFS 结果,字符串搜索,Java Web 组件入口分析,CFG 程序分析,JVM 栈帧分析,自定义表达式搜索,紧跟 AI 技术发展,支持 MCP 调用,支持 n8n 工作流

Java 2,056 198 Updated Apr 11, 2026

项目是根据LandGrey/SpringBootVulExploit清单编写,目的hvv期间快速利用漏洞、降低漏洞利用门槛。

Java 1,903 314 Updated Jan 15, 2024

一款基于BurpSuite的被动式shiro检测插件

Java 1,799 159 Updated Dec 14, 2022

A simple FOFA client written in JavaFX. Made by WgpSec, Maintained by f1ashine.

Java 1,779 164 Updated Dec 26, 2025

HeapDump敏感信息提取工具

Java 1,651 147 Updated Dec 15, 2025

Thinkphp(GUI)漏洞利用工具,支持各版本TP漏洞检测,命令执行,getshell。

Java 1,570 184 Updated Jun 1, 2022

WebSocket 内存马/Webshell,一种新型内存马/WebShell技术

Java 1,494 230 Updated Apr 10, 2023

OAExploit一款基于产品的一键扫描工具。

Java 1,483 197 Updated Sep 20, 2022

一款专注于 Java 主流 Web 中间件的内存马快速生成工具,致力于简化安全研究人员和红队成员的工作流程,提升攻防效率

Java 1,417 143 Updated Apr 9, 2026

攻防演练过程中,我们通常会用浏览器访问一些资产,但很多未授权/敏感信息/越权隐匿在已访问接口过html、JS文件等,该插件能让我们发现未授权/敏感信息/越权/登陆接口等。

Java 1,384 76 Updated Oct 3, 2024

Web漏洞扫描工具XRAY的GUI启动器

Java 1,324 148 Updated May 19, 2023

Fiora:漏洞PoC框架Nuclei的图形版。快捷搜索PoC、一键运行Nuclei。即可作为独立程序运行,也可作为burp插件使用。

Java 1,280 151 Updated Apr 10, 2026

一款基于BurpSuite的被动式FastJson检测插件

Java 1,242 131 Updated Oct 1, 2022

Spring Boot web application vulnerable to Log4Shell (CVE-2021-44228).

Java 1,141 553 Updated Apr 26, 2024

A malicious LDAP server for JNDI injection attacks

Java 1,079 228 Updated Sep 28, 2023

IDEA静态代码安全审计及漏洞一键修复插件

Java 1,049 155 Updated Mar 10, 2022
Next