Mshell-攻防内存马研究

Mshell-攻防内存马研究

不知从那天起,内存马悄悄成为了新的技术研究方向。一边习惯了技术的更迭而淡定自若,一边突然面对消失的技术而黯然伤神消沉。猛回头,发现突然消失的又何止是技术?本项目用来收集整理内存马相关的技术资料,包括内存马技术原理实现方法具体的项目等。内存马在Java领域独领风骚,因此我们将重点关注Java内存马。

[本文防采集 - 藏鲸阁]

https://github.com/Getshell/Mshell/tree/main

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]



[本文防采集 - 藏鲸阁]

01-内存马资源





一、优秀文章[本文防采集 - 藏鲸阁]





[本文防采集 - 藏鲸阁]







[本文防采集 - 藏鲸阁]



[本文防采集 - 藏鲸阁]





[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]



[本文防采集 - 藏鲸阁]







[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]



[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]



[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]





[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]





[本文防采集 - 藏鲸阁]



[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

















[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]





[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]



[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]



[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]







[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]



[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]





[本文防采集 - 藏鲸阁]



[本文防采集 - 藏鲸阁]







[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]



[本文防采集 - 藏鲸阁]





[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]





[本文防采集 - 藏鲸阁]









[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]



[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]





[本文防采集 - 藏鲸阁]





[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]





[本文防采集 - 藏鲸阁]



[本文防采集 - 藏鲸阁]





[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]



[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]



[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]







[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]





[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]



[本文防采集 - 藏鲸阁]





[本文防采集 - 藏鲸阁]













[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]



[本文防采集 - 藏鲸阁]





[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]



[本文防采集 - 藏鲸阁]



[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]



[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]















[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]







[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]



[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]



[本文防采集 - 藏鲸阁]



[本文防采集 - 藏鲸阁]





[本文防采集 - 藏鲸阁]



[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]











[本文防采集 - 藏鲸阁]



[本文防采集 - 藏鲸阁]





[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]





[本文防采集 - 藏鲸阁]

    • [ ] https://xz.aliyun.com/t/13268

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

    • [ ] https://github.com/W01fh4cker/LearnJavaMemshellFromZero



    • [ ] https://xz.aliyun.com/t/13638





    • [ ] https://xz.aliyun.com/t/13640

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

    • [ ] https://xz.aliyun.com/t/13639



[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

二、开源项目​



    • [x] https://github.com/topics/memshell

    • [x] https://github.com/search?q=memshell



    • [x] https://github.com/pen4uin/java-memshell-generator

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

    • [x] https://github.com/hosch3n/msmap

[本文防采集 - 藏鲸阁]

    • [x] https://github.com/0x00007c00/JundeadShell



    • [x] https://github.com/threedr3am/ZhouYu

    • [x] https://github.com/feihong-cs/memShell



    • [x] https://github.com/jweny/MemShellDemo



    • [x] https://github.com/achuna33/Memoryshell-JavaALL



    • [x] https://github.com/achuna33/FuckMemshell



[本文防采集 - 藏鲸阁]

    • [x] https://github.com/BeichenDream/GodzillaMemoryShellProject

    • [x] https://github.com/ethushiroha/JavaAgentTools

[本文防采集 - 藏鲸阁]



    • [x] https://github.com/rebeyond/memShell

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

    • [x] https://github.com/ax1sX/MemShell

[本文防采集 - 藏鲸阁]

    • [x] https://github.com/0x727/DropLabTools

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

    • [x] https://github.com/su18/MemoryShell

    • [x] https://github.com/safe6Sec/MemoryShell

[本文防采集 - 藏鲸阁]



    • [x] https://github.com/NikolaGareth/MemoryShell

[本文防采集 - 藏鲸阁]

    • [x] https://github.com/7BitsTeam/LearningAgentShell



    • [x] https://github.com/gobysec/Memory-Shell

[本文防采集 - 藏鲸阁]

    • [x] https://github.com/XhstormR/memshell-serial

[本文防采集 - 藏鲸阁]

    • [x] https://github.com/minhangxiaohui/JAVA_memshells

[本文防采集 - 藏鲸阁]



    • [x] https://github.com/kuron3k0/java_memshell

[本文防采集 - 藏鲸阁]

    • [x] https://github.com/changheluor007/MemShell-1



    • [x] https://github.com/bmth666/memshell

[本文防采集 - 藏鲸阁]

    • [ ] https://github.com/Octoberfest7/MemFiles



[本文防采集 - 藏鲸阁]

    • [ ] https://github.com/lz2y/yaml-payload-for-ruoyi

    • [ ] https://github.com/retry-later/MemoryShell_java





    • [ ] https://github.com/AzRunRCE/MemoryShellCodeExploit





    • [ ] https://github.com/kyo-w/router-router



[本文防采集 - 藏鲸阁]

    • [x] https://github.com/INT2ECALL/Awesome-JavaMemoryShell

[本文防采集 - 藏鲸阁]



    • [x] https://github.com/cri1wa/MemShell





    • [ ] https://github.com/c0ny1/java-object-searcher

[本文防采集 - 藏鲸阁]

    • [ ] https://github.com/pwntester/ysoserial.net

[本文防采集 - 藏鲸阁]

    • [ ] https://github.com/veo/vagent

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

    • [ ] https://github.com/rzte/agentcrack



    • [ ] https://github.com/veo/ebpf_shell

[本文防采集 - 藏鲸阁]

    • [ ] https://github.com/veo/nginx_shell

[本文防采集 - 藏鲸阁]

    • [x] https://github.com/ReaJason/MemShellParty

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]



三、学术论文​



[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]



四、其他项目

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

02-内存马原理

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

    • [ ] https://0e0w.com/Mshell #文章编写中,待公开





[本文防采集 - 藏鲸阁]

03-内存马实战



一、Tomcat​



    • [x] https://github.com/Getshell/TomShell

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

    • [x] https://github.com/ce-automne/TomcatMemShell

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

    • [ ] https://github.com/K4ys0n/TomcatMemShellDemo

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

    • [ ] https://github.com/bitterzzZZ/MemoryShellLearn



[本文防采集 - 藏鲸阁]

    • [x] https://github.com/birdhan/Memory



[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

二、Weblogic[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

    • [x] https://github.com/Getshell/WeblogicShell



[本文防采集 - 藏鲸阁]

    • [ ] https://github.com/keven1z/weblogic_memshell

[本文防采集 - 藏鲸阁]

    • [ ] https://github.com/Y4er/WebLogic-Shiro-shell



三、Spring​

    • [x] https://github.com/Getshell/SpringShell



    • [ ] https://github.com/passer-W/snakeyaml-memshell



    • [ ] https://github.com/mieeA/SpringWebflux-MemShell



    • [ ] https://github.com/viemsr/spring_cloud_gateway_memshell







四、Shiro[本文防采集 - 藏鲸阁]



[本文防采集 - 藏鲸阁]

    • [ ] https://github.com/KpLi0rn/ShiroVulnEnv

    • [ ] https://github.com/yyhuni/shiroMemshell

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

五、Jboss​



六、WebSphere[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]



七、Python​

    • [ ] https://github.com/iceyhexman/flask_memory_shell

[本文防采集 - 藏鲸阁]

八、.NET​

[本文防采集 - 藏鲸阁]



    • [ ] https://github.com/crisprss/net_memory_webshell



[本文防采集 - 藏鲸阁]

    • [ ] https://github.com/BeichenDream/GodzillaMemoryShellProject.NET





九、Struts2[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]



十、WebSocket[本文防采集 - 藏鲸阁]



    • [x] https://github.com/veo/wsMemShell



    • [ ] https://www.freebuf.com/articles/web/339702.html

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

    • [ ] https://paper.seebug.org/1935

[本文防采集 - 藏鲸阁]



[本文防采集 - 藏鲸阁]



    • [ ] https://www.cnblogs.com/duanxz/p/5041110.html



[本文防采集 - 藏鲸阁]



[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]



十一、gRPC[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

    • [ ] https://github.com/snailll/gRPCDemo

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

九九、待整理[本文防采集 - 藏鲸阁]











    • [ ] https://github.com/whwlsfb/cve-2022-22947-godzilla-memshell





    • [ ] https://github.com/A-D-Team/SharpMemshell



[本文防采集 - 藏鲸阁]

    • [ ] https://github.com/threedr3am/JSP-WebShells

[本文防采集 - 藏鲸阁]



    • [ ] https://github.com/Boogipop/Netty-WebFlux-Memshell



[本文防采集 - 藏鲸阁]

04-内存马查杀

[本文防采集 - 藏鲸阁]



    • [ ] https://github.com/geekmc/FindShell

    • [ ] https://github.com/4ra1n/shell-analyzer

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

    • [ ] https://github.com/c0ny1/java-memshell-scanner



    • [ ] https://github.com/LandGrey/copagent

[本文防采集 - 藏鲸阁]

    • [ ] https://github.com/alibaba/arthas

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

    • [ ] https://github.com/sf197/MemoryShellHunter

    • [ ] https://github.com/cri1wa/DefendMemoryShell

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

    • [ ] https://github.com/tovd-go/java-memshell-scan

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

    • [ ] https://github.com/huoji120/DuckMemoryScan

    • [ ] https://github.com/threedr3am/GuanYu



[本文防采集 - 藏鲸阁]

    • [ ] https://mp.weixin.qq.com/s/y6qEtfhdA8Udmvxuh7H12Q

[本文防采集 - 藏鲸阁]

[本文防采集 - 藏鲸阁]

05-内存马参考



    • [ ] https://github.com/pen4uin

[本文防采集 - 藏鲸阁]

    • [ ] https://github.com/threedr3am



[本文防采集 - 藏鲸阁]

    • [ ] https://github.com/Getshell/Webshell

[本文防采集 - 藏鲸阁]



    • [ ] https://github.com/HackJava/HackJava

    • [ ] https://github.com/HackJava/JNDI



    • [ ] https://github.com/HackJava/jspshell

[本文防采集 - 藏鲸阁]



    • [ ] https://github.com/RoboTerh

[本文防采集 - 藏鲸阁]



  •  

Hidden Bot Trap
© 版权声明
THE END
喜欢就支持一下吧
点赞8 分享
评论 共1条
头像
欢迎您留下宝贵的见解!
提交
头像

昵称

取消
昵称表情代码图片