All-in-one plugin for Burp Suite for the detection and the exploitation of Java deserialization vulnerabilities
Les fonctionnalités principales de federicodotta/java-deserialization-scanner sont : Vulnerability Scanners, Deserialization Vulnerabilities, Web Application Scanning.
Les alternatives open-source à federicodotta/java-deserialization-scanner incluent : linkedin/sometime — A BurpSuite plugin to detect Same Origin Method Execution vulnerabilities. h3xstream/burp-retire-js — Burp/ZAP/Maven extension that integrate Retire.js repository to find vulnerable Javascript libraries. arachni/arachni — Arachni is a dynamic application security testing vulnerability scanner and web application security tool. It… bishopfox/gadgetprobe — Probe endpoints consuming Java serialized objects to identify classes, libraries, and library versions on remote Java… dionach/cmsmap — CMSmap is a python open source CMS scanner that automates the process of detecting security flaws of the most popular… portswigger/backslash-powered-scanner — Finds unknown classes of injection vulnerabilities.
Probe endpoints consuming Java serialized objects to identify classes, libraries, and library versions on remote Java classpaths.
CMSmap is a python open source CMS scanner that automates the process of detecting security flaws of the most popular CMSs.
Arachni is a dynamic application security testing vulnerability scanner and web application security tool. It functions as a distributed web audit framework that performs active and passive audits to identify security flaws such as SQL injection and cross-site scripting. The project features a JavaScript-aware web crawler that executes scripts and monitors DOM changes to analyze modern dynamic web applications. It utilizes server platform fingerprinting to target compatible security payloads and provides a grid-based system to distribute scanning workloads across multiple nodes. The tool cov
Burp/ZAP/Maven extension that integrate Retire.js repository to find vulnerable Javascript libraries.