Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Log4j-check — log4J burp被扫插件、CVE-2021-44228、支持dnclog.cn和burp内置DNS、可配合JNDIExploit生成payload | Kitploit
Tools/GitHubGitHub/bigsizeme/log4j-check
Vulnerability ScannersPayload GenerationExploitationWeb Application ExploitationPenetration TestingDNS Analysis
GitHubbigsizeme/log4j-check

Log4j-check

log4J burp被扫插件、CVE-2021-44228、支持dnclog.cn和burp内置DNS、可配合JNDIExploit生成payload

View Repository
70164 years agoReviewed by Kitploit

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

Log4j-check

Supports RC1 bypass log4j Burp scanning plugin, CVE-2021-44228, supports RC1 bypass, supports JSON data types, supports dnslog.cn and Burp's built-in DNS, can be used with JNDIExploit to generate payloads

Modified based on @pmiaowu's fastjson plugin. The original author used dnslog.cn for outbound checks, but during large-scale offensive and defensive exercises (HW), due to preliminary reconnaissance and testing many sites, dnslog.cn blocks IPs, causing the plugin to fail normal detection.

The base code was completed by @pmiaow. The source code is not provided here.

Download available in releases

Result interface Alt text Right-click in Repeater Alt text

Download Tool