devilmaycrying Goto Github PK
Type: User
Type: User
为方便WAF入库的项目 | 分享PHP免杀大马 | 菜是原罪 | 多姿势(假的就一个)
收集一些比较优秀的开源安全项目,以帮助甲方安全从业人员构建企业安全能力。
A little proxy tool based on Tencent Cloud Function Service.
主要是收集自己编写、改造的一些小的脚本:ip-reverse-to-domain| findSubDomains| Shodan| ZoomEye| Censys|ecshop|vul-info-collect|cve_for_today|telnet
实战沉淀字典
SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.
渗透测试常用代码
ServerScan一款使用Golang开发的高并发网络扫描、服务探测工具。
内网渗透中常用的c#程序整合成cs脚本,直接内存加载。持续更新~
Shiro反序列化利用工具,支持新版本(AES-GCM)Shiro的key爆破,配合ysoserial,生成回显Payload
Apache Shiro Java Analysis and Utilization of Deserialization Vulnerabilities
ShiroExploit GUI版本
Shiro RememberMe 1.2.4 反序列化漏洞图形化检测工具(Shiro-550)
Shiro<=1.2.4反序列化,一键检测工具
Get ports,vulnerabilities,informations,banners,..etc for any IP with Shodan (no apikey! no rate-limit!)
扫描网站是否存在SpringBoot API信息泄漏或阿里云存储OSSKEY泄漏
SpringBoot 相关漏洞学习资料,利用方法和技巧合集,黑盒安全评估 checklist
工欲善其事,必先利其器
挖掘src常用脚本
SSRF漏洞测试、利用 SSRF vulnerability testing and utilization
Automatic SSRF fuzzer and exploitation tool
基于golang协程实现的超级代理,真正优雅使用代理池
Repository for all TeamARES POC code and tools.
HTTP Sniffer/Capture on iOS for Network Debug & Inspect.
一些实用的python脚本
None
Burp Extension written in Jython to hunt for common vulnerabilities found in websites. Developed by Gaurav Narwani to help people find vulnerabilities and teach how to exploit them.
[Exploit] vBulletin 5.1.x - PreAuth Remote Code Execution
(CVE-2020-17496) vBulletin 5.x Widget_tabbedcontainer_tab_panel RCE Vuln Test script
A declarative, efficient, and flexible JavaScript library for building user interfaces.
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
An Open Source Machine Learning Framework for Everyone
The Web framework for perfectionists with deadlines.
A PHP framework for web artisans
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
Some thing interesting about web. New door for the world.
A server is a program made to process requests and deliver data to clients.
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
Some thing interesting about visualization, use data art
Some thing interesting about game, make everyone happy.
We are working to build community through open source technology. NB: members must have two-factor auth.
Open source projects and samples from Microsoft.
Google ❤️ Open Source for everyone.
Alibaba Open Source for everyone
Data-Driven Documents codes.
China tencent open source team.