wgpsec/aboutsecurity
java-serialization-audit
Java 源码序列化类漏洞审计。当在 Java 白盒审计中需要检测序列化/反序列化相关漏洞时触发。 覆盖 3 类风险: Java 原生反序列化(ObjectInputStream/Gadget Chain/ysoserial)、 XXE(DocumentBuilderFactory/SAXParser/XMLInput…
Installation
npx skills add https://github.com/wgpsec/aboutsecurity
Similar popular skills
Related neighbors and high-traction skills in the same topics — useful to compare before installing.
Create model classes with `fromJson` and `toJson` methods using `dart:convert`. Use when manual…
29.6K installsRender and serialize Portable Text to React, Svelte, Vue, Astro, HTML, Markdown, and plain text.
2.2K installs>- Insecure deserialization playbook. Use when Java, PHP, or Python applications deserialize un…
2.9K installsProvides patterns for unit testing JSON serialization/deserialization with Jackson and `@JsonTe…
2.8K installsUse when implementing save/load systems, player progress persistence, or data serialization in …
776 installsAlso in this package
Other skills from wgpsec/aboutsecurity · top by installs.
npx skills add https://github.com/wgpsec/aboutsecurity
More details
Agent compatibility
Declared targets from SKILL.md / docs. Unmarked agents are not listed — the skill may still install via the CLI.
Repository health
master
History
- First seen on skills.sh
- First recorded snapshot · 17 installs