SerialKillerBypassGadgetCollection

Bypass gadget collection

A collection of bypass gadgets to extend and wrap ysoserial payloads

Collection of bypass gadgets to extend and wrap ysoserial payloads

GitHub

350 stars
16 watching
76 forks
Language: Java
last commit: over 2 years ago

Related projects:

Repository Description Stars
isecpartners/android-killpermandsigchecks A tool to bypass Android's signature and permission checks for Inter-Process Communications (IPC) using Cydia Substrate. 83
jackofmosttrades/gadgetinspector Analyzes Java applications for potential deserialization gadget chains to help identify vulnerabilities and prioritize remediation. 996
1n3/intruderpayloads A collection of tools and methodologies for simulating web application attacks 3,681
waldo-irc/youmaypasser A proof-of-concept implementation of Gargoyle to bypass anti-cheat systems PeSieve and Moneta on 64-bit Windows 249
masatokinugawa/filterbypass Provides cheat sheets and guidance on bypassing browser XSS filters to inject malicious content into web pages 1,116
codewatchorg/bypasswaf An extension that automatically adds headers to Burp requests to bypass certain Web Application Firewall products. 330
chudypb/xstream-gadgets A collection of gadgets ported from ysoserial, transformed into the XStream serialization format to facilitate exploitation in Java applications. 32
urule99/jsunpack-n A tool designed to emulate browser behavior and detect vulnerabilities in web-based exploits 162
nccgroup/burpsuitehttpsmuggler A tool to bypass web application firewalls (WAFs) and test their effectiveness 709
cboesecurity/password_pwncheck A tool that checks password strength against breached lists and other rules to help maintain enterprise password policies. 158
ghostlulzhacks/waybacksqliscanner Scans URLs from the wayback machine and tests GET parameters for SQL injection vulnerabilities. 185
codewatchorg/burp-indicatorsofvulnerability A Burp extension that scans application traffic for signs of vulnerabilities and potential attack targets 41
jumpseclabs/rook Automates password cracking on AWS using GPU-based instances. 79
bishopfox/gadgetprobe Tools for analyzing and exploiting vulnerabilities in Java deserialization vulnerabilities 585
dagrz/aws_pwn A collection of scripts for testing and exploiting AWS accounts 1,173