cszx21 Goto Github PK
Type: User
Type: User
ffffffff0x 团队维护的安全知识框架,内容包括不仅限于 web安全、工控安全、取证、应急、蓝队设施部署、后渗透、Linux安全、各类靶机writup
ARL官方仓库备份项目:ARL(Asset Reconnaissance Lighthouse)资产侦察灯塔系统旨在快速侦察与目标关联的互联网资产,构建基础资产信息库。 协助甲方安全团队或者渗透测试人员有效侦察和检索资产,发现存在的薄弱点和攻击面。
一个漏洞POC知识库
蓝队工具箱
白阁文库是白泽Sec安全团队维护的一个漏洞POC和EXP公开项目
XssPayload List . Usage:
Exphub[漏洞利用脚本库] 包括Webloigc、Struts2、Tomcat、Nexus、Solr、Jboss、Drupal的漏洞利用脚本,最新添加CVE-2020-14882、CVE-2020-11444、CVE-2020-10204、CVE-2020-10199、CVE-2020-1938、CVE-2020-2551、CVE-2020-2555、CVE-2020-2883、CVE-2019-17558、CVE-2019-6340
Web Pentesting Fuzz 字典,一个就够了。
This tool generates gopher link for exploiting SSRF and gaining RCE in various servers
☕️ Java Security,安全编码和代码审计
互联网避雷针
自动化Host碰撞工具,帮助红队快速扩展网络边界,获取更多目标点
Jar Analyzer - 一个JAR包分析工具,批量分析搜索,方法调用关系搜索,字符串搜索,Spring分析,CFG分析,JVM Stack Frame分析,远程分析Tomcat,自定义SQL查询,执行脚本语言等功能
JNDI注入测试工具(A tool which generates JNDI links can start several servers to exploit JNDI Injection vulnerability,like Jackson,Fastjson,etc)
无状态子域名爆破工具
Study Notes For Web Hacking / Web安全学习笔记
基于laravel框架的企业级开源cms管理系统,开源php商城源码,B2C微商城系统,企业建站cms。
MSSQL注入提权,bypass的一些总结
OneForAll是一款功能强大的子域收集工具
跑路机场名单收集(2020-2024),欢迎投稿。
面向网络安全从业者的知识文库🍃
渗透测试常规操作记录
《PHP代码审计入门指南》 这本指南包含了我在学习PHP代码审计过程中整理出的一些技巧和对漏洞的一些理解
POC&EXP仓库、hvv弹药库、Nday、1day
红蓝对抗以及护网相关工具和资料,内存shellcode(cs+msf)和内存马查杀工具
Hosted Reverse Shell generator with a ton of functionality. -- (Great for CTFs)
Official repository vuls Scan: 15000+PoCs; 23 kinds of application password crack; 7000+Web fingerprints; 146 protocols and 90000+ rules Port scanning; Fuzz, HW, awesome BugBounty( ͡° ͜ʖ ͡°)...
一个2023届毕业生在毕业前持续更新、收集的安全岗面试题及面试经验分享~
信息收集自动化工具
Automatic SSTI detection tool with interactive interface
A declarative, efficient, and flexible JavaScript library for building user interfaces.
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
An Open Source Machine Learning Framework for Everyone
The Web framework for perfectionists with deadlines.
A PHP framework for web artisans
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
Some thing interesting about web. New door for the world.
A server is a program made to process requests and deliver data to clients.
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
Some thing interesting about visualization, use data art
Some thing interesting about game, make everyone happy.
We are working to build community through open source technology. NB: members must have two-factor auth.
Open source projects and samples from Microsoft.
Google ❤️ Open Source for everyone.
Alibaba Open Source for everyone
Data-Driven Documents codes.
China tencent open source team.