Giter Club home page Giter Club logo

By Mstir 燕雀安知鸿鹄之志 👋

About Me

  • 👋 Hi, My ID is Mstir
  • 👀 I'm good at 代码审计,工具编写和渗透测试
  • 👋 My 公众号: 星悦安全
  • 🌱 JetBrains OSS Developer(使用JetBrains开源许可证)
  • 💞️ 感谢Github开源社区,感谢JetBrains对 Open source code 做出的贡献

My Skills

My Future

🥰恭喜您成为第 位访客,感谢您的关注和支持~😍
  • 👀 会尝试上传我自己整理的一些笔记, 以及我自己做的一些安全相关的工具
  • 🌱 维护好团队项目, 开发出更多的优质项目
  • 👋 分享优质渗透测试的*姿势,欢迎师傅们和我交流~

By Mstir!'s Projects

1000php icon 1000php

1000个PHP代码审计案例(2016.7以前乌云公开漏洞)

anychat icon anychat

基于WebSocket的局域网聊天的项目,改到在线聊天

bayonet icon bayonet

bayonet是一款src资产管理系统,从子域名、端口服务、漏洞、爬虫等一体化的资产管理系统

burpfakeip icon burpfakeip

一个用于伪造ip地址进行爆破的Burp Suite插件

cerberus icon cerberus

一款功能强大的漏洞扫描器,子域名爆破使用aioDNS,asyncio异步快速扫描,覆盖目标全方位资产进行批量漏洞扫描,中间件信息收集,自动收集ip代理,探测Waf信息时自动使用来保护本机真实Ip,在本机Ip被Waf杀死后,自动切换代理Ip进行扫描,Waf信息收集(国内外100+款waf信息)包括安全狗,云锁,阿里云,云盾,腾讯云等,提供部分已知waf bypass 方案,中间件漏洞检测(Thinkphp,weblogic等 CVE-2018-5955,CVE-2018-12613,CVE-2018-11759等),支持SQL注入, XSS, 命令执行,文件包含, ssrf 漏洞扫描, 支持自定义漏洞邮箱推送功能

cobra icon cobra

Source Code Security Audit (源代码安全审计)

cve-2020-2555 icon cve-2020-2555

Weblogic com.tangosol.util.extractor.ReflectionExtractor RCE

cve-2022-21971 icon cve-2022-21971

PoC for CVE-2022-21971 "Windows Runtime Remote Code Execution Vulnerability"

cve_2020_2546 icon cve_2020_2546

CVE-2020-2546,CVE-2020-2915 CVE-2020-2801 CVE-2020-2798 CVE-2020-2883 CVE-2020-2884 CVE-2020-2950 WebLogic T3 payload exploit poc python3

cvelist icon cvelist

Pilot program for CVE submission through GitHub

dirmap icon dirmap

An advanced web directory & file scanning tool that will be more powerful than DirBuster, Dirsearch, cansina, and Yu Jian.一个高级web目录、文件扫描工具,功能将会强于DirBuster、Dirsearch、cansina、御剑。

fuzzdicts icon fuzzdicts

Web Pentesting Fuzz 字典,一个就够了。

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.