Ross ROSS = Recommend OSS · open-source software intelligence for agents

fnmsd/MySQL_Fake_Server

MySQL Fake Server use to help MySQL Client File Reading and JDBC Client Java Deserialize observed · 2026-08-28

github.com/fnmsd/MySQL_Fake_Server · Python observed · 2026-08-28

Health v2 · maintenance only

32/100

  • Activity 0
  • Release rhythm 35
  • Longevity 100

Flags: no_releases no_license

How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-02. Adoption (stars, forks) is never an input.

  • gap_med: n/a
  • age_days: 2332
  • days_rel: n/a
  • days_push: 1749
  • n_releases_24m: 0

Full methodology

Adoption not part of the score

1378 stars · 155 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded

A pure Python3 fake MySQL server used in penetration testing to exploit MySQL client file reading and trigger Java deserialization attacks against MySQL JDBC clients. It serves crafted responses based on the login username and integrates with ysoserial for payload generation.

Use cases

  • read arbitrary files from MySQL clients via malicious server
  • exploit MySQL JDBC client Java deserialization vulnerabilities
  • test MySQL Connector/J autoDeserialize attack vectors
  • capture files from tools like PHPMyAdmin or Navicat connecting to a fake MySQL server
  • generate ysoserial payloads through JDBC connection strings
  • simulate a malicious MySQL server during red team engagements

When to choose

  • you are performing authorized penetration testing against MySQL clients
  • you need to test whether a JDBC client is vulnerable to deserialization attacks
  • you want a dependency-free Python tool for MySQL client file reading exploits

When to avoid

  • you need a real MySQL database server
  • you are not authorized to test the target systems
  • you need a maintained tool with active support and a license

Facets

service · maturity maintenance

security networking developer-tools security penetration-testing databases developer-tools python cross-platform cli fake-server mysql penetration-testing file-reading java-deserialization jdbc-exploit red-team security-tools

1 source

Member repositories

RepositoryRoleHealth v2
fnmsd/MySQL_Fake_Servermain32

For agents

markdown · JSON · MCP: product_card(name="fnmsd/MySQL_Fake_Server")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem