Skip to content

AntongG2/log4j-wordlist-generator

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

13 Commits
 
 
 
 
 
 

Repository files navigation

log4j CVE-2021-44228 wordlist
wordlist including bypass for waf
detection script
script to help you test the vulnerability of log4j, wordlist includes all payloads indlucing bypasses, on parameters and headers for manual testing, basically invented for manual testing in burp suite intruder, in specefic area.  
Open changer.py with notepad
in line fout.write(line.replace('****', 'test')), change "test" with your collaborator, save, and run the script.

Ex:('****', '4did8zvbgr8a5xi0oc2s9l1f46awyl.burpcollaborator.net'))