Skip to content

Navigation Menu

Sign in
Appearance settings

Search code, repositories, users, issues, pull requests...

Provide feedback

We read every piece of feedback, and take your input very seriously.

Saved searches

Use saved searches to filter your results more quickly

Sign up
Appearance settings

Releases: whgojp/JavaSecLab

V1.4

21 Mar 09:00
@whgojp whgojp

Choose a tag to compare

修复已知问题:
新增漏洞模块:MYSQL-JDBC反序列化漏洞
Dom型XSS:location、eval、document
HTML5特性XSS:WebSocket Xss、PostMessage Xss
支付漏洞:支付金额篡改、订单重放、条件竞争、支付流程绕过、整数溢出、浮点数精度
新增流量分析🆕:提供漏洞利用流量,方便分析学习

Assets 3
Loading

Release V1.3

24 Nov 13:19
@whgojp whgojp

Choose a tag to compare

  • 新增漏洞类型:日志泄漏、弱口令枚举、弱口令爆破、修改响应包绕过、密码重置步骤绕过、sign请求签名绕过、rsa前端加密绕过
  • 修复已知问题
  • 新增WIKI项目文档🆕:[项目WIKi](https://github.com/whgojp/JavaSecLab/wiki)
Loading

Release V1.2

17 Nov 13:11
@whgojp whgojp

Choose a tag to compare

  • 修复已知问题:多Session会话共存、文件上传bug修复
  • 新增漏洞模块:验证码安全(图形验证码、短信验证码)
Loading

Release V1.1

10 Nov 10:08
@whgojp whgojp

Choose a tag to compare

  • 修复已知问题
  • 平台页面UI:简化对应缺陷/安全代码、优化DashBoard页面
  • 新增漏洞模块:IDOR(水平/垂直越权)、拒绝服务、XPATH注入
Loading

AltStyle によって変換されたページ (->オリジナル) /