SerialKillerBypassGadgetCollection

Bypass gadget collection

A collection of bypass gadgets to extend and wrap ysoserial payloads

Collection of bypass gadgets to extend and wrap ysoserial payloads

GitHub

351 stars
16 watching
76 forks
Language: Java
last commit: almost 3 years ago

Related projects:

Repository Description Stars
isecpartners/android-killpermandsigchecks A tool to bypass Android's signature and permission checks for Inter-Process Communications (IPC) using Cydia Substrate. 83
jackofmosttrades/gadgetinspector Analyzes Java applications for potential deserialization gadget chains to help identify vulnerabilities and prioritize remediation. 1,005
1n3/intruderpayloads A collection of tools and methodologies for identifying vulnerabilities in web applications 3,698
waldo-irc/youmaypasser A proof-of-concept implementation of Gargoyle to bypass anti-cheat systems PeSieve and Moneta on 64-bit Windows 250
masatokinugawa/filterbypass Provides cheat sheets and guidance on bypassing browser XSS filters to inject malicious content into web pages 1,116
codewatchorg/bypasswaf An extension that automatically adds headers to Burp requests to bypass certain Web Application Firewall products. 330
chudypb/xstream-gadgets A collection of gadgets ported from ysoserial, transformed into the XStream serialization format to facilitate exploitation in Java applications. 32
urule99/jsunpack-n A tool designed to emulate browser behavior and detect vulnerabilities in web-based exploits 163
nccgroup/burpsuitehttpsmuggler A tool to bypass web application firewalls (WAFs) and test their effectiveness 711
cboesecurity/password_pwncheck A tool that checks password strength against breached lists and other rules to help maintain enterprise password policies. 158
ghostlulzhacks/waybacksqliscanner Scans URLs from the wayback machine and tests GET parameters for SQL injection vulnerabilities. 187
codewatchorg/burp-indicatorsofvulnerability A Burp extension that scans application traffic for signs of vulnerabilities and potential attack targets 41
jumpseclabs/rook Automates password cracking on AWS using GPU-based instances. 82
bishopfox/gadgetprobe Tools for analyzing and exploiting vulnerabilities in Java deserialization vulnerabilities 587
dagrz/aws_pwn A collection of scripts for testing and exploiting AWS accounts 1,174