ysoserial
A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.

ysoserial
A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.
ysoserial Description
A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization. This tool is designed to help developers and security researchers identify and exploit vulnerabilities in Java applications. ysoserial is a command-line tool that generates payloads for various Java deserialization vulnerabilities, including those in Apache Commons Collections, Apache Commons BeanUtils, and others. ysoserial is a powerful tool for identifying and exploiting Java deserialization vulnerabilities, and can be used by developers, security researchers, and penetration testers to improve the security of their applications. ysoserial is available for download on GitHub.
ysoserial FAQ
Common questions about ysoserial including features, pricing, alternatives, and user reviews.
ysoserial is A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.. It is a Vulnerability Management solution designed to help security teams with Security Research, Vulnerability, Payload Generation.
ALTERNATIVES
Protocol-aware fuzzer combining pen testing & fuzzing for embedded/IoT security.
SecLists is a comprehensive repository of security testing lists including usernames, passwords, URLs, fuzzing payloads, and web shells used during penetration testing and security assessments.
A web-based payload repository that generates ready-to-use exploits for pentesting
A correlated injection proxy tool that integrates with XSS Hunter for automated cross-site scripting vulnerability testing and payload tracking.
Automate Google Hacking Database scraping and searching with Pagodo, a tool for finding vulnerabilities and sensitive information.
POPULAR
TRENDING CATEGORIES
Stay Updated with Mandos Brief
Get strategic cybersecurity insights in your inbox