# R4gd0ll/I-Wanna-Get-All

综合漏洞后渗透利用工具

Repository: https://github.com/R4gd0ll/I-Wanna-Get-All
Canonical: https://ross.abutalabs.com/products/i-wanna-get-all
License Family: other
Last push: 2025-12-11T02:48:15+00:00

## Health v2 (maintenance only)
Score: 59/100 (v2, computed 2026-09-02T17:46:02.011165+00:00)
- activity 56, release rhythm 60, longevity 65
- inputs: {"age_days": 922, "days_push": 265, "days_rel": 265, "gap_med": 1, "n_releases_24m": 2}
- flags: no_license
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 1787, forks 129 (observed 2026-08-28T04:05:36.279533+00:00)

## What it is
A comprehensive Java post-exploitation vulnerability exploitation tool integrating 470 exploit modules for detection and attack of known vulnerabilities. It bundles deserialization gadget generation (Ysoserial-style), memory shell injection, DNSLog-based detection, and batch scanning with report export.

## Use cases
- detect java deserialization vulnerabilities with dnslog callback
- generate ysoserial gadget payloads bypassing jdk17
- inject memory shells into geoserver or ruoyi
- batch scan up to 10 ips for known cves
- generate java memshell class files
- exploit jeecg and yonyou backend vulnerabilities

## When to choose
- you are a pentester testing java applications for known exploitable vulnerabilities
- you need an all-in-one exploit toolkit with deserialization and memshell modules
- you want dnslog-based out-of-band vulnerability verification

## When to avoid
- you need a compliant, licensed enterprise tool - it has no license file
- you want a general-purpose vulnerability scanner rather than java-focused exploitation
- unauthorized use - attacking systems without permission is illegal

## Facets
- artifact type: cli-tool
- maturity: active
- function: penetration-testing, vulnerability-scanning, security
- domain: security, penetration-testing, developer-tools
- platform: cross-platform, jvm, cli
- tags: post-exploitation, exploit-framework, deserialization, memshell, dnslog, java-vulnerabilities, red-team, ysoserial

## Member repositories
- R4gd0ll/I-Wanna-Get-All (main) score 59

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:05:36.279533+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-30T03:23:28.205618+00:00, confidence not recorded.
  - readme: https://github.com/R4gd0ll/I-Wanna-Get-All (fetched 2026-08-28T04:05:36.279533+00:00, sha 2b28c51e5ce0)
- Data as of 2026-08-30T08:39:29.467469+00:00.
