# threedr3am/JSP-WebShells

Collect JSP webshell of various implementation methods. 梳理和发现的JSP Webshell各种姿势

Repository: https://github.com/threedr3am/JSP-WebShells
Canonical: https://ross.abutalabs.com/products/jsp-webshells
Language: Java
License Family: other
Last push: 2022-01-18T04:01:09+00:00

## Health v2 (maintenance only)
Score: 32/100 (v2, computed 2026-09-02T17:46:02.011165+00:00)
- activity 0, release rhythm 35, longevity 100
- inputs: {"age_days": 2292, "days_push": 1688, "days_rel": null, "gap_med": null, "n_releases_24m": 0}
- flags: no_releases, no_license
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 1398, forks 328 (observed 2026-08-28T04:04:36.832152+00:00)

## What it is
A curated collection of JSP webshell samples demonstrating various implementation techniques such as class loading, bytecode manipulation, script engines, deserialization, and dynamic compilation. It is intended for security research and defensive self-auditing, not for launching attacks.

## Use cases
- study JSP webshell evasion techniques
- build detection rules for JSP backdoors
- test webshell scanners against known variants
- research Java class loading and deserialization abuse
- audit Java web applications for webshell risks
- learn offensive security techniques for Java servers

## When to choose
- you need reference samples of diverse JSP webshell implementations
- you are writing or benchmarking webshell detection tools
- you research Java security and evasion techniques

## When to avoid
- you want a ready-to-use offensive hacking tool
- you need a maintained webshell management framework
- you need non-Java (PHP/ASP) webshell samples

## Facets
- artifact type: dataset
- maturity: maintenance
- function: security, penetration-testing, vulnerability-scanning, developer-tools
- domain: security, penetration-testing, web-development, developer-tools
- platform: jvm, cross-platform
- tags: jsp, webshell, java, security-research, backdoor, detection-bypass, collection, red-team, web-server

## Member repositories
- threedr3am/JSP-WebShells (main) score 32

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:04:36.832152+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-30T04:39:14.837365+00:00, confidence not recorded.
  - readme: https://github.com/threedr3am/JSP-WebShells (fetched 2026-08-28T04:04:36.832152+00:00, sha f99c4ad0607a)
- Data as of 2026-08-30T08:39:29.467469+00:00.
