awesome-repositories.com
Blog
MCP
awesome-repositories.com

Descoperă cele mai bune repository-uri open source cu căutare AI.

ExploreazăCăutări recomandateAlternative open-sourceSoftware self-hostedBlogHartă site
ProiectServer MCPDespreCum realizăm clasamentulPresă
LegalConfidențialitateTermeni
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Back to y4er/ysoserial

Open-source alternatives to Ysoserial

20 open-source projects similar to y4er/ysoserial, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best Ysoserial alternative.

  • mbechler/marshalsecAvatar mbechler

    mbechler/marshalsec

    3,691Vezi pe GitHub↗

    Marshalsec is a toolkit designed for generating malicious serialized Java objects to achieve remote code execution during the unmarshalling process. It functions as a Java deserialization exploit tool and a framework for triggering Java Naming and Directory Interface lookups to remote servers. The project provides a JNDI redirector service that intercepts lookups and points targets toward a remote codebase. It includes utilities for crafting payloads that force Java applications to download and execute arbitrary classes from a remote URL. The toolset covers security analysis activities inclu

    Java
    Vezi pe GitHub↗3,691
  • wh1t3p1g/ysomapAvatar wh1t3p1g

    wh1t3p1g/ysomap

    1,240Vezi pe GitHub↗

    A helpful Java Deserialization exploit framework.

    Javaexploitation-frameworkjava-deserialization
    Vezi pe GitHub↗1,240
  • frohoff/ysoserialAvatar frohoff

    frohoff/ysoserial

    8,750Vezi pe GitHub↗

    ysoserial is a security research tool and payload generator designed to identify and exploit insecure Java deserialization. It functions as a framework for creating malicious serialized objects that can trigger remote code execution on Java virtual machines. The project provides a library of known gadget chains, which are sequences of vulnerable class calls that achieve arbitrary command execution during the deserialization process. It automates the generation of these payloads by leveraging common third-party libraries. The tool covers capabilities for security penetration testing, Java app

    Javadeserializationexploitgadget
    Vezi pe GitHub↗8,750
  • qi4l/jysoAvatar qi4L

    qi4L/JYso

    1,752Vezi pe GitHub↗

    JNDIExploit or a ysoserial.

    Javaattackgadgetjava
    Vezi pe GitHub↗1,752

Căutare AI

Explorează mai multe repository-uri excelente

Descrie ce ai nevoie în limbaj simplu — AI-ul sortează mii de proiecte open source selectate în funcție de relevanță.

Find more with AI search
  • ar3h/utf8-overlong-agentA

    Ar3h/utf8-overlong-agent

    0Vezi pe GitHub↗
    Vezi pe GitHub↗0
  • deepingh0st/ysoserialD

    DeEpinGh0st/ysoserial

    0Vezi pe GitHub↗
    Vezi pe GitHub↗0
  • exp1orer/jndi-inject-exploitE

    exp1orer/JNDI-Inject-Exploit

    0Vezi pe GitHub↗
    Vezi pe GitHub↗0
  • java-chains/web-chainsJ

    Java-Chains/web-chains

    0Vezi pe GitHub↗
    Vezi pe GitHub↗0
  • phith0n/zkarP

    phith0n/zkar

    0Vezi pe GitHub↗
    Vezi pe GitHub↗0
  • rebeyond/jndinjectorR

    rebeyond/JNDInjector

    0Vezi pe GitHub↗
    Vezi pe GitHub↗0
  • vulhub/java-chainsV

    vulhub/java-chains

    0Vezi pe GitHub↗
    Vezi pe GitHub↗0
  • vulhub/jndiexploitV

    vulhub/JNDIExploit

    0Vezi pe GitHub↗
    Vezi pe GitHub↗0
  • welk1n/jndi-injection-exploitAvatar welk1n

    welk1n/JNDI-Injection-Exploit

    2,814Vezi pe GitHub↗

    JNDI注入测试工具(A tool which generates JNDI links can start several servers to exploit JNDI Injection vulnerability,like Jackson,Fastjson,etc)

    Java
    Vezi pe GitHub↗2,814
  • whitehsbg/jndiexploitW

    WhiteHSBG/JNDIExploit

    0Vezi pe GitHub↗
    Vezi pe GitHub↗0
  • whoopsunix/pppysoW

    Whoopsunix/PPPYSO

    0Vezi pe GitHub↗
    Vezi pe GitHub↗0
  • 0ofo/deswing0

    0ofo/Deswing

    0Vezi pe GitHub↗
    Vezi pe GitHub↗0
  • 4ra1n/mysql-fake-server4

    4ra1n/mysql-fake-server

    0Vezi pe GitHub↗
    Vezi pe GitHub↗0
  • a-d-team/attackrmiA

    A-D-Team/attackRmi

    0Vezi pe GitHub↗
    Vezi pe GitHub↗0
  • ambionics/phpggcAvatar ambionics

    ambionics/phpggc

    3,832Vezi pe GitHub↗

    phpggc is a security assessment utility and command-line tool designed for the automated generation, obfuscation, and wrapping of serialized object chains. It functions as a gadget chain framework used to identify and verify remote code execution vectors by testing for PHP object injection vulnerabilities. The project provides a modular system for constructing complex serialized object sequences and includes a dedicated payload obfuscator to transform byte streams for bypassing web application firewalls and security filters. It also features a generator for wrapping serialized data into archi

    PHP
    Vezi pe GitHub↗3,832
  • yaklang/yakitAvatar yaklang

    yaklang/yakit

    7,386Vezi pe GitHub↗

    Yakit is a comprehensive cybersecurity all-in-one platform designed for security assessments. It integrates a suite of core tools including an HTTP interception proxy for real-time traffic modification, an out-of-band interaction detector for verifying remote command execution via TCP, DNSLog, and ICMP, and a reverse shell manager for controlling remote server connections. The platform is distinguished by its dedicated security scripting environment, which allows for the development and execution of custom logic and plugins using a specialized high-performance language. It further extends fun

    TypeScriptblueteamburpsuiteexploit
    Vezi pe GitHub↗7,386