hvvvva's Repositories
hvvvva/hot-jar-swapping-urlclassloader
Demo of the URLClassLoader JAR-swapping showing the ability to replace and exploit an already loaded JAR with inner classes
hvvvva/Java-Deserialization-Cheat-Sheet
The cheat sheet about Java Deserialization vulnerabilities
hvvvva/learnjavabug
Java安全相关的漏洞和技术demo,原生Java、Fastjson、Jackson、Hessian2、XML反序列化漏洞利用和Spring、Dubbo、Shiro、CAS、Tomcat、RMI、Nexus等框架\中间件\功能的exploits以及Java Security Manager绕过、Dubbo-Hessian2安全加固等等实践代码。
hvvvva/marshalsec
hvvvva/nvimdots
A well configured and structured Neovim.
hvvvva/pydictor
A powerful and useful hacker dictionary builder for a brute-force attack
hvvvva/spring-boot-upload-file-lead-to-rce-tricks
spring boot Fat Jar 任意写文件漏洞到稳定 RCE 利用技巧