github-yxl Goto Github PK
Type: User
Type: User
各种CMS、各种平台、各种系统、各种软件漏洞的EXP、POC ,该项目将持续更新
Small and highly portable detection tests based on MITRE's ATT&CK.
一个利用OneForAll进行子域收集、Shodan API端口扫描、Xray漏洞Fuzz、Server酱的自动化漏洞扫描、即时通知提醒的漏洞挖掘辅助工具
Awesome Burp Suite Resources. 400+ open source Burp plugins, 400+ posts and videos.
一个红队知识仓库
业务风险枚举与规避知识(Business Risk Enumeration & Avoidance Kownledge)
Burp Suite Pro Loader & Keygen ( BurpSuite version v2020.1 - ∞ )
有关burpsuite的插件(非商店),文章以及使用技巧的收集(此项目不再提供burpsuite破解文件,如需要请在博客mrxn.net下载)---Collection of burpsuite plugins (non-stores), articles and tips for using Burpsuite, no crack version file
Web path scanner
domain_hunter的高级版本,SRC挖洞、HW打点之必备!自动化资产收集;快速Title获取;外部工具联动;等等
漏洞复现、批量脚本
EyeJo是一款自动化资产风险评估平台,可以协助甲方安全人员或乙方安全人员对授权的资产中进行排查,快速发现存在的薄弱点和攻击面。
基于chrome、firefox插件的被动式信息泄漏检测工具
Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl.
🔥 Proxy is a high performance HTTP(S) proxies, SOCKS5 proxies,WEBSOCKET, TCP, UDP proxy server implemented by golang. Now, it supports chain-style proxies,nat forwarding in different lan,TCP/UDP port forwarding, SSH forwarding.Proxy是golang实现的高性能http,https,websocket,tcp,socks5代理服务器,支持内网穿透,链式代理,通讯加密,智能HTTP,SOCKS5代理,黑白名单,限速,限流量,限连接数,跨平台,KCP支持,认证API。
渗透测试报告/资料文档/渗透经验文档/安全书籍
A malicious LDAP server for JNDI injection attacks
Linux 应急响应手册
Organize your API security assessment by using MindAPI. It's free and open for community collaboration.
在线漏洞平台
150本信息安全方面的书籍书籍(持续更新)
OneDragon 安全圈一条龙服务,全自动化挖洞,助力挖SRC的赏金猎人白帽子,一键实现子域名扫描,全端口扫描,目录扫描,漏洞扫描。
OneForAll是一款功能强大的子域收集工具
渗透测试人员专用精简化字典 Dictionary for penetration testers happy hacker
🔒 A compiled checklist of 300+ tips for protecting digital security and privacy in 2022
利用大量高威胁poc/exp快速获取目标权限,用于渗透和红队快速打点
面向开发人员梳理的代码安全指南
SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.
Shiro反序列化利用工具,支持key爆破,配合ysoserial,生成回显Payload
A declarative, efficient, and flexible JavaScript library for building user interfaces.
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
An Open Source Machine Learning Framework for Everyone
The Web framework for perfectionists with deadlines.
A PHP framework for web artisans
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
Some thing interesting about web. New door for the world.
A server is a program made to process requests and deliver data to clients.
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
Some thing interesting about visualization, use data art
Some thing interesting about game, make everyone happy.
We are working to build community through open source technology. NB: members must have two-factor auth.
Open source projects and samples from Microsoft.
Google ❤️ Open Source for everyone.
Alibaba Open Source for everyone
Data-Driven Documents codes.
China tencent open source team.