SWAT 
 Deserialization Whitelist Agent
 An agent-based tool to create and manage a whitelist of whitelisted classes for protection against malicious Java deserialization attacks
Serial Whitelist Application Trainer
29 stars
 3 watching
 5 forks
 
Language: Java 
last commit: over 6 years ago  Related projects:
| Repository | Description | Stars | 
|---|---|---|
|    |  An agent that prevents deserialization attacks by making certain classes unserializable | 186 | 
|    |  A Burp extension that enables Java Deserialization Attacks using a payload generator tool | 208 | 
|    |  A tool to detect and exploit deserialization vulnerabilities in Java and .NET applications. | 574 | 
|    |  A plugin for detecting and exploiting vulnerabilities in Java deserialization | 775 | 
|    |  A Java deserialization library designed to secure applications by inspecting and controlling class loading during object deserialization | 408 | 
|    |  A Burp Suite Extender to identify Java Deserialization vulnerabilities in client requests and server responses. | 9 | 
|    |  An active Java deserialization vulnerability identifier and exploiter | 7 | 
|    |  Tools for analyzing and exploiting vulnerabilities in Java deserialization vulnerabilities | 587 | 
|    |  Analyzes Java bytecode to identify potential deserialization vulnerabilities. | 240 | 
|    |  A tool designed to simulate malicious behavior against Google Workspace environments for threat research and detection rule effectiveness testing | 163 | 
|    |  A Java library for serializing and deserializing objects to JSON-LD format using annotations. | 12 | 
|    |  A webshell framework for penetration testers to interact with remote systems and execute system commands. | 296 | 
|    |  A tool to deserialize Java objects to XML and load classes/jars dynamically. | 15 | 
|    |  A presentation and discussion on the security risks of deserialization in Java object graphs. | 5 | 
|    |  A Swift library for tokenizing strings with customizable matching behavior | 689 |