
Dual-purpose JNDI injection and Java deserialization exploitation framework with advanced bypass capabilities for WAF, RASP, and high JDK versions. Supports memory shell injection, serialization payload generation, and MSF/CS integration.
It can be used as a tool for ysoserial and JNDIExploit at the same time, and has the bypass function of multiple JNDI high versions, WAF, and RASP
📢 Please take a moment to read this document, it will help you quickly get familiar with JYso!
🧐 Use the Documentation Wiki.
✔ Download the latest version of Releases.
If you have other great ideas, please let me know! 😎
Download gradle8.7+ and configure it in the global environment variable, and execute it in the project root directory
./gradlew shadowJar
For more information, please refer to Directory structure description.

JYso has joined the CTStack community

JYso has joined 404Starlink