🐸
endy's notes
search
⌘Ctrlk
🐸
endy's notes
  • 👋Welcome
  • 💁Blog linh tinh
    • HTB CPTS - review linh tinh
  • 🥷Red Teaming
    • HackTheBox Writeup
    • Priv Escalation
    • C2
    • Active Directory
    • Lateral Movement
  • 🕸️Web Security
    • XS Leak
    • Java Sec Learn
      • pegasusJava Memory shell
    • .Net Sec Learn
  • ⛳CTF Writeups
    • Writeup KMA CTF 2024
    • TetCTF2024
    • SVATT Cấp học viện 2023
    • KMA CTF 2023
    • TetCTF 2023
    • DiceCTF 2023
    • KCSC CTF 2025
gitbookPowered by GitBook
block-quoteOn this pagechevron-down
  1. 🕸️Web Security

Java Sec Learn

hashtag
Java Deserialize:

  • https://hackmd.io/@endy/r1sYTUYOharrow-up-right

  • https://hackmd.io/@endy/HyzJE0jO2arrow-up-right

  • https://hackmd.io/@endy/BJQe9cROnarrow-up-right

hashtag
SpEL Injection

  • https://endy21.hashnode.dev/javasec-spel-injectionarrow-up-right

hashtag
RMI

  • https://endy21.hashnode.dev/javasec-rmi-remote-method-invocationarrow-up-right

hashtag
JNDI Injection

  • https://endy21.hashnode.dev/javasec-jndi-injectionarrow-up-right

PreviousXS Leakchevron-leftNextJava Memory shellchevron-right

Last updated 1 year ago

  • Java Deserialize:
  • SpEL Injection
  • RMI
  • JNDI Injection