Stars
Ghidra is a software reverse engineering (SRE) framework
A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.
Tsunami is a general purpose network security scanner with an extensible plugin system for detecting high severity vulnerabilities with high confidence.
An Open Source Java Decompiler Gui for Procyon
A Java library for capturing, crafting, and sending packets.
A byte code analyzer for finding deserialization gadget chains in Java applications
A tool to dump Java serialization streams in a more human readable form.
All-in-one plugin for Burp Suite for the detection and the exploitation of Java deserialization vulnerabilities
Ghidra utilities for analyzing PC firmware
Easy-to-use java bytecode editor - successor of JByteMod!
Primitive tool for exploring/querying Java classes via the Tinkerpop Gremlin graph traversal language
A static analysis API for finding deserialization attack gadgets
Plattform to develop and experiment with existing java web attacks.