yaml-payload
Deserialization payload generator
A utility for generating deserialization payloads in SnakeYAML format to exploit certain security vulnerabilities
A tiny project for generating SnakeYAML deserialization payloads
570 stars
5 watching
104 forks
Language: Java
last commit: almost 6 years ago Related projects:
Repository | Description | Stars |
---|---|---|
| A tool to generate deserialization payloads for exploiting vulnerabilities in various frameworks | 105 |
| A Burp extension that enables Java Deserialization Attacks using a payload generator tool | 208 |
| Generates PNG images with stored XSS payloads in IDAT chunks. | 177 |
| A tool to generate XML payloads for use with XMLDecoder based on ProcessBuilder and Runtime exec | 149 |
| A PowerShell module that serializes and deserializes simple objects to and from YAML format. | 436 |
| An In-memory compilation and reflective loading framework for generating and executing malicious C# payloads to evade antivirus detection. | 368 |
| Tools for analyzing and exploiting vulnerabilities in Java deserialization vulnerabilities | 587 |
| A YAML serialization library for Java 8 and above with an intuitive API and features like block style representation and support for comments. | 264 |
| A Scala wrapper for a YAML serialization library | 99 |
| A lab project providing code samples and tools to understand deserialization vulnerabilities in Java applications. | 497 |
| A framework for creating environmental keyed payloads | 740 |
| A simple command-line utility for parsing and modifying YAML files. | 86 |
| Automatically generates Yara rules to hunt for similar code samples based on VirusTotal's code similarity feature. | 96 |
| A Clojure/ClojureScript library for accelerating JSON data deserialization in browser applications. | 62 |
| Automates the creation of Yara rules to detect malware and other malicious objects of interest by analyzing sample files from various sources. | 332 |