Skip to content
View startAt35's full-sized avatar

Block or report startAt35

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Starred repositories

23 stars written in Java
Clear filter

A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.

Java 8,896 1,854 Updated Dec 4, 2025

SpringBoot 相关漏洞学习资料,利用方法和技巧合集,黑盒安全评估 check list

Java 6,131 1,318 Updated Mar 10, 2021

HaE - Highlighter and Extractor, Empower ethical hacker for efficient operations. 赋能白帽,高效作战!

Java 4,171 303 Updated May 20, 2026

Java安全相关的漏洞和技术demo,原生Java、Fastjson、Jackson、Hessian2、XML反序列化漏洞利用和Spring、Dubbo、Shiro、CAS、Tomcat、RMI、Nexus等框架\中间件\功能的exploits以及Java Security Manager绕过、Dubbo-Hessian2安全加固等等实践代码。

Java 2,695 496 Updated Mar 14, 2024

Java web common vulnerabilities and security code which is base on springboot and spring security

Java 2,665 758 Updated Dec 2, 2024

红蓝对抗以及护网相关工具和资料,内存shellcode(cs+msf)和内存马查杀工具

Java 2,590 576 Updated May 15, 2026

a rep for documenting my study, may be from 0 to 0.1

Java 2,272 340 Updated Mar 25, 2026

APIKit:Discovery, Scan and Audit APIs Toolkit All In One.

Java 2,262 180 Updated Apr 2, 2024

domain_hunter的高级版本,SRC挖洞、HW打点之必备!自动化资产收集;快速Title获取;外部工具联动;等等

Java 2,131 208 Updated Apr 10, 2026

Share Things Related to Java - Java安全漫谈笔记相关内容

Java 2,013 229 Updated Apr 9, 2025

A burp extension that add some useful function to Context Menu 添加一些右键菜单让burp用起来更顺畅

Java 1,930 209 Updated May 3, 2026

BurpCrypto is a collection of burpsuite encryption plug-ins, support AES/RSA/DES/ExecJs(execute JS encryption code in burpsuite). 支持多种加密算法或直接执行JS代码的用于爆破前端加密的BurpSuite插件

Java 1,628 172 Updated Aug 4, 2023

记录一下 Java 安全学习历程,也算是半条学习路线了

Java 1,352 123 Updated Jun 26, 2025

shiro综合利用工具

Java 652 82 Updated Apr 15, 2023

Burpsuite-Plugins-Usage

Java 516 128 Updated Mar 28, 2026

A Burp Suite Pro extension which augments your proxy traffic by injecting non-invasive headers designed to reveal backend systems by causing pingbacks to Burp Collaborator

Java 445 99 Updated Apr 11, 2025

一款用于JNDI注入利用的工具,大量参考/引用了Rogue JNDI项目的代码,支持直接植入内存shell,并集成了常见的bypass 高版本JDK的方式,适用于与自动化工具配合使用。

Java 370 29 Updated Sep 6, 2022

xp_CAPTCHA_api burp 验证码识别插件 调用接口 准确率更高

Java 259 37 Updated Oct 28, 2022

Unicode To Chinese -- U2C : A burpsuite Extender That Convert Unicode To Chinese 【Unicode编码转中文的burp插件】

Java 254 21 Updated Feb 20, 2022

一款OutLook信息收集工具

Java 244 22 Updated May 23, 2023
Java 243 64 Updated May 21, 2026

A simple FOFA client written in JavaFX.Based on fofa_viewer development of the viewer project

Java 127 6 Updated Mar 17, 2024