工具库
⚔️ Web Hacker's Weapons / A collection of cool tools used by Web hackers. Happy hacking , Happy bug-hunting
集Fofa、Hunter鹰图、Shodan、360 quake、Zoomeye 钟馗之眼、censys 为一体的空间测绘gui图形界面化工具,支持一键采集爬取和导出fofa、shodan等数据,方便快捷查看
yscan是一款基于go写的端口扫描工具,集masscan+nmap+wappalyzer+证书于一体
The dynamic infrastructure framework for everybody! Distribute the workload of many different scanning tools with ease, including nmap, ffuf, masscan, nuclei, meg and many more!
数据库自动取样工具 - The tool used to extract the information from databases quickly.
js cookie逆向利器:js cookie变动监控可视化工具 & js cookie hook打条件断点
Comfortably monitor your Internet traffic 🕵️♂️
实时风控引擎(Risk Engine),自定义规则引擎(Rule Script),完美支持中文,适用于反欺诈(Anti-fraud)应用场景,开箱即用!!!移动互联网时代的风险管理利器,你 Get 到了吗?
Now we have become very big, Different from the original idea. Collect premium software in various categories.
APIKit:Discovery, Scan and Audit APIs Toolkit All In One.
Kraken, a modular multi-language webshell coded by @secu_x11
Burp插件,根据自定义来达到对数据包的处理(适用于加解密、爆破等),类似mitmproxy,不同点在于经过了burp中转,在自动加解密的基础上,不影响APP、网站加解密正常逻辑等。
用友NC系列漏洞检测利用工具,支持一键检测、命令执行回显、文件落地、一键打入内存马、文件读取等
Self-hosted passive subdomain continous monitoring tool.
Nosey Parker is a command-line tool that finds secrets and sensitive information in textual data and Git history.
Take a list of domains and probe for working HTTP and HTTPS servers
A cross platform front-end GUI of the popular youtube-dl written in wxPython.
⡷⠂𝚔𝚊𝚛𝚖𝚊 𝚟𝟸⠐⢾ is a Passive Open Source Intelligence (OSINT) Automated Reconnaissance (framework)