The cheat sheet about Java Deserialization vulnerabilities
Sample codes written for the Hackers to Hackers Conference magazine 2017 (H2HC).
JexBoss: Jboss (and Java Deserialization Vulnerabilities) verify and EXploitation Tool
All in one
Tomcat内存马、XStream、Fastjson、Weblogic T3安全笔记
javaDeserializeLabs
Java反序列化漏洞学习笔记
java反序列化学习笔记
针对类似CVE-2017-10271漏洞的一个java反序列化漏洞扫描器