ysoserial Logo

ysoserial

0
Free
Visit Website

A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization. This tool is designed to help developers and security researchers identify and exploit vulnerabilities in Java applications. ysoserial is a command-line tool that generates payloads for various Java deserialization vulnerabilities, including those in Apache Commons Collections, Apache Commons BeanUtils, and others. ysoserial is a powerful tool for identifying and exploiting Java deserialization vulnerabilities, and can be used by developers, security researchers, and penetration testers to improve the security of their applications. ysoserial is available for download on GitHub.

FEATURES

ALTERNATIVES

Exploiting a vulnerability in HID iClass system to retrieve master authentication key for cloning cards and changing reader settings.

A tool that recovers passwords from pixelized screenshots

A Burp Suite plugin for automatically adding XSS and SQL payload to fuzz

A tool for malware analysts to search through base64-encoded samples and generate yara rules.

UDcide provides an alternative approach to dealing with Android malware by targeting specific behaviors for removal.

Dalfox is a powerful open-source XSS scanner and utility focused on automation.

A tool to find XSS vulnerabilities in web applications

RetDec is a versatile machine-code decompiler with support for various file formats and architectures.

CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Copyright © 2024 - All rights reserved