Stars
An Efficient ProxyPool with Getter, Tester and Server
Handbook of information collection for penetration testing and src
Java安全相关的漏洞和技术demo,原生Java、Fastjson、Jackson、Hessian2、XML反序列化漏洞利用和Spring、Dubbo、Shiro、CAS、Tomcat、RMI、Nexus等框架\中间件\功能的exploits以及Java Security Manager绕过、Dubbo-Hessian2安全加固等等实践代码。
The great impacket example scripts compiled for Windows
红/蓝队环境自动化部署工具 | Red/Blue team environment automation deployment tool
ffffffff0x 团队维护的安全知识框架,内容包括不仅限于 web安全、工控安全、取证、应急、蓝队设施部署、后渗透、Linux安全、各类靶机writup
Share Things Related to Java - Java安全漫谈笔记相关内容
Packer Fuzzer is a fast and efficient scanner for security detection of websites constructed by javascript module bundler such as Webpack.
Vulnerabilities of Goby supported with exploitation.
Nuclei plugin for BurpSuite
Fiora:漏洞PoC框架Nuclei的图形版。快捷搜索PoC、一键运行Nuclei。即可作为独立程序运行,也可作为burp插件使用。
Community curated list of templates for the nuclei engine to find security vulnerabilities.
For basic researches, top 25 vulnerability parameters that can be used in automation tools or manual recon. 🛡️⚔️🧙
40X/HTTP bypasser in Go. Features: Verb tampering, headers, #bugbountytips, User-Agents, extensions, default credentials...
A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.