⌨️
Penetration testing & ethical hacking concepts
Search...
Ctrl
K
Web Application Penetration Testing
Server-Side attacks
Insecure deserialization
Tools
1. PHP Gadget Chain (PHPGGC)
GitHub - ambionics/phpggc: PHPGGC is a library of PHP unserialize() payloads along with a tool to generate them, from command line or programmatically.
GitHub
2. Ysoserial for Java
GitHub - frohoff/ysoserial: A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.
GitHub
Previous
PHP magic methods
Next
Client-Side attacks
Last updated
21 hours ago