Pinned Repositories
AndroidSystemServiceFuuzzer
BufferOveflowDemo
C does not check bound of an array,if write data over the array's bound can cause buffer overflow,which can change the control flow of a program and cause arbitrary code execution.
CVE-2018-14667-poc
CVE-2018-14667-poc Richfaces漏洞环境及PoC
fastjson60-DoS
fastjson 在1.2.60以下时,处理/xHH出现问题,导致程序OOM,最终导致DoS
fastjsonvul
fastjson漏洞环境及poc
Java-Deserialization-Cheat-Sheet
The cheat sheet about Java Deserialization vulnerabilities
javamelody-vuldemo
javamelody vul environment.
jdbctemplate-demo
jdbc sql注入demo
mybatis-generator-nodollar
mybatis generator 生成配置文件,去掉order by sql拼接
ShiroVulDemo
Shiro漏洞靶场,forked from https://github.com/v5java/demo-springmvc-shiro
Venscor's Repositories
Venscor/fastjson60-DoS
fastjson 在1.2.60以下时,处理/xHH出现问题,导致程序OOM,最终导致DoS
Venscor/CVE-2018-14667-poc
CVE-2018-14667-poc Richfaces漏洞环境及PoC
Venscor/fastjsonvul
fastjson漏洞环境及poc
Venscor/mybatis-generator-nodollar
mybatis generator 生成配置文件,去掉order by sql拼接
Venscor/ShiroVulDemo
Shiro漏洞靶场,forked from https://github.com/v5java/demo-springmvc-shiro
Venscor/javamelody-vuldemo
javamelody vul environment.
Venscor/jdbctemplate-demo
jdbc sql注入demo
Venscor/openrasp-iast
IAST 灰盒扫描工具
Venscor/actuator-vul-poc
actuator漏洞执行环境及poc
Venscor/aix-vuldemo
vul environment of axis
Venscor/ATTCK-PenTester-Book
ATTCK-PenTester-Book
Venscor/checkmarx-python-sdk
Checkmarx Python SDK
Venscor/CNVD-2020-10487-Tomcat-Ajp-lfi
Tomcat-Ajp协议文件读取漏洞
Venscor/CVE-2023-4863
Venscor/DongTai-agent-java
“火线~洞态IAST”是一款专为甲方安全人员、甲乙代码审计工程师和0 Day漏洞挖掘人员量身打造的辅助工具,可用于集成devops环境进行漏洞检测、作为代码审计的辅助工具和自动化挖掘0 Day。
Venscor/ebpf-slide
Collection of Linux eBPF slides/documents.
Venscor/fuzzDicts
Web Pentesting Fuzz 字典,一个就够了。
Venscor/generator
A code generator for MyBatis.
Venscor/Java-Bug-Record
记录一些不太常见的Java开发Bug,避免二次踩坑。
Venscor/javaweb-rasp
Venscor/JMXDemo
JMX了解与测试
Venscor/log4j-core-vul
log4j-core漏洞环境
Venscor/mybatisdemo
mybatis demo,用于快速测试
Venscor/open-twitter-hacking
Venscor/openrasp
Open source RASP solution
Venscor/queries-repo
Venscor/Src-Toolset
应急工具集
Venscor/swagger-demo
swgger生产环境开启时,有安全风险,此为demo
Venscor/vulnerability-assessment-tool
Analyses your Java and Python applications for open-source dependencies with known vulnerabilities, using both static analysis and testing to determine code context and usage for greater accuracy. https://sap.github.io/vulnerability-assessment-tool/
Venscor/xss-patcher-js
前后端分离下的XSS漏洞编码修复方法