behan / DSer-SQLi
At it's current state, this is a very rough modification to Manish Saindane's tool "DSer". The idea is to incorporate injection tools (that support proxies) with the intent to attack Java serialized communication in an automated fashion. For instance, if you know a SQLi vuln exists, it would be nice to use a tool like sqlmap to automate exploitation. If you are unfamiliar with DSer, please take a moment to watch Manish's video located on the Attack and Defense website (http://www.andlabs.org). You can also read his slides from Blackhat Europe 2010 ("Attacking Java Serialized Communication") as well as dowload his original tool there.
About this discovery
This repository is cataloged as part of our automated global GitHub synchronization. Full telemetry, velocity snapshots, and code summaries are scheduled for continuous enrichment.