2-day longest streak
Hi there 👋 <!-- hackerxj007/hackerxj007 is a ✨ _special_ ✨ repository because its README.md (this file) appears on your GitHub profile. Here are some ideas to get you started: 🔭…
Hi there 👋
<!--
hackerxj007/hackerxj007 is a ✨ _special_ ✨ repository because its README.md (this file) appears on your GitHub profile.
Here are some ideas to get you started:
- 🔭 I’m currently working on ...
- 🌱 I’m currently learning ...
- 👯 I’m looking to collaborate on ...
- 🤔 I’m looking for help with ...
- 💬 Ask me about ...
- 📫 How to reach me: ...
- 😄 Pronouns: ...
- ⚡ Fun fact: ...
-
Bypass_Webshell
webshell编码工具 支持 jsp net php asp编码免杀
★ 30 7mo agoExplain → -
godzilla-ai-mcp
哥斯拉4.0.1,415版本都支持的mcp插件
★ 12 23d agoExplain → -
CVE-2021-26855
CVE-2021-26855 exp
★ 5 5y agoExplain → -
goFunctionStomping
FunctionStomping (using golang) : A new shellcode injection technique.
★ 4 4y agoExplain → -
TonWeb-Ejb
TonWeb ejb反序列化 gui检测工具 支持内存马注入,cmd回显
★ 2 7mo agoExplain → -
CyberLens
CyberLens 是一款集成了 **FOFA**、**Quake (360)**、**Hunter (鹰图)** 和 **ZoomEye (钟馗之眼)** 四大测绘引擎的综合网络安全工具。它不仅支持多源数据的聚合搜索,还内置了强大的本地扫描与资产管理功能,是红队评估、资产收集和漏洞挖掘的得力助手。
★ 2 1mo agoExplain → -
SharpUserIP ⑂
在域控或远程提取登录日志,快速获取域用户对应的IP地址
★ 2 3y agoExplain → -
R-dict ⑂
一些自己常用的渗透字典
★ 2 4y agoExplain → -
JinGe-tool
金格报表利用工具,读取文件,写文件,自定义方法等
★ 1 1mo agoExplain → -
dirsearch_dicc ⑂
dirsearch自用字典
★ 1 3y agoExplain → -
DecryptOA ⑂
OA系统解密小工具
★ 1 2y agoExplain → -
Chunk-proxy-ms ⑂
Chunk-proxy java内存马版
★ 1 3y agoExplain → -
NacosRce ⑂
No description.
★ 1 3y agoExplain → -
zipcreater ⑂
ZipCreater主要应用于跨目录的文件上传漏洞的利用,它能够快速进行压缩包生成。
★ 1 4y agoExplain → -
SunloginRCE ⑂
向日葵RCE,网段扫描/中文显示
★ 1 4y agoExplain → -
Java-Shellcode-Loader ⑂
基于Java实现的Shellcode加载器
★ 1 4y agoExplain → -
reverse-skill ⑂
Reverse Engineering / Authorized Penetration Testing / Security Research Skill Router Pack AI-powered routing + On-demand toolchain bootstrapping + Self-evolving knowledge base Supports Claude Code, Kiro, Cursor, Cline, and other AI coding clients 逆向/渗透/安全技能路由包 - AI 自动路由 + 按需自举工具链 + 自动进化经验库 | 支持 Claude Code / Kiro / Cursor / Cline 等代码 AI 客户端
★ 0 1mo agoExplain → -
exploitarium ⑂
A single archive of public exploit PoCs and vulnerability research writeups. At the time I post these, none have been reported. Feel free to report them yourself and take credit for the CVE if handed out lulz. Please do not abuse these. I do this so to allure people into the field, and I've always found this is the most efficient way.
★ 0 1mo agoExplain → -
SpringBootExploit ⑂
项目是根据LandGrey/SpringBootVulExploit清单编写,目的hvv期间快速利用漏洞、降低漏洞利用门槛。
★ 0 4y agoExplain → -
sliver ⑂
Adversary Emulation Framework
★ 0 5mo agoExplain → -
manjusaka ⑂
牛屎花 一款基于WEB界面的远程主机管理工具
★ 0 7mo agoExplain → -
tabby ⑂
A CAT called tabby ( Code Analysis Tool )
★ 0 3y agoExplain → -
xss-me ⑂
为了方便快速搭建,把网上流传的改进版的xss.me用docker进行部署
★ 0 7y agoExplain → -
qc_poc ⑂
漏洞poc
★ 0 1y agoExplain → -
rathole ⑂
A lightweight and high-performance reverse proxy for NAT traversal, written in Rust. An alternative to frp and ngrok.
★ 0 3y agoExplain → -
CS2-External-Overlay-Cheat ⑂
Counter-Strike 2 external cheat, dx11 overlay displaying the most important in-game information. This cheat features ESP, Mouse Aimbot, and lots of other things that will make it easier to play the game.
★ 0 1y agoExplain → -
w20241231-POC ⑂
备份的漏洞库,3月开始我们来维护
★ 0 1y agoExplain → -
Awesome-Ollama-Server ⑂
这是一个用于监控和检测 Ollama 服务可用性和性能的系统。它提供了一个现代化的 Web 界面,支持多语言(中文/英文),并具有实时检测和数据展示功能。
★ 0 1y agoExplain → -
daydayExp-pocs ⑂
daydayExp的漏洞POC仓库,慢慢更新...
★ 0 1y agoExplain → -
SecDictionary ⑂
实战沉淀字典
★ 0 1y agoExplain → -
data-cve-poc ⑂
这个仓库收集了所有在 GitHub 上能找到的 CVE 漏洞利用工具。 This repository collects all CVE exploits found on GitHub.
★ 0 1y agoExplain → -
ysoSimple ⑂
ysoSimple:简易的Java漏洞利用工具,集成Java反序列化,Hessian反序列化,XStream反序列化,SnakeYaml反序列化,Shiro550,JSF反序列化,SSTI模板注入,JdbcAttackPayload,JNDIAttack,字节码生成。
★ 0 1y agoExplain → -
OnePanSearchApi ⑂
一盘搜索API / 夸克网盘/百度网盘/迅雷云盘/ 对接互联网上的搜索网盘资源的接口,并行搜索并返回搜索结果。
★ 0 1y agoExplain → -
wxvl ⑂
复现|漏洞|CVE|CNVD|POC|EXP|0day|1day|nday等相关微信文章收集
★ 0 1y agoExplain → -
BloodHound ⑂
Six Degrees of Domain Admin
★ 0 5y agoExplain → -
Hessian-Deserialize-RCE ⑂
Hession-Deserialize-RCE 反序列化命令执行
★ 0 6y agoExplain → -
POC-2024-11-19 ⑂
收集整理漏洞EXP/POC,大部分漏洞来源网络,目前收集整理了1200多个poc/exp,长期更新。
★ 0 1y agoExplain → -
CVE-2022-46463 ⑂
harbor unauthorized detection
★ 0 1y agoExplain → -
Jeecg_v4.0_getshell ⑂
No description.
★ 0 3y agoExplain → -
hashdump ⑂
Dumping Windows Local Credentials Tools/Tricks
★ 0 6y agoExplain → -
HACKING-TOOLS ⑂
No description.
★ 0 5y agoExplain → -
ObserverWard ⑂
Cross platform community web fingerprint identification tool
★ 0 3y agoExplain → -
CVE-2021-3156 ⑂
Sudo Baron Samedit Exploit
★ 0 4y agoExplain → -
CVE-2022-2588 ⑂
exploit for CVE-2022-2588
★ 0 3y agoExplain → -
3snake_ssh ⑂
Tool for extracting information from newly spawned processes
★ 0 4y agoExplain → -
xray-crack ⑂
xray社区高级版证书生成,仅供学习研究,正常使用请支持正版
★ 0 5y agoExplain → -
wechat ⑂
微信收藏的文章
★ 0 2y agoExplain → -
Proxy-Attackchain ⑂
Proxylogon & Proxyshell & Proxyoracle & Proxytoken & All exchange server history vulns summarization :)
★ 0 2y agoExplain → -
PIGADVulnScanner ⑂
检测域内常见一把梭漏洞,包括:NoPac、ZeroLogon、CVE-2022-26923、PrintNightMare
★ 0 2y agoExplain → -
Awesome-POC ⑂
一个漏洞POC知识库
★ 0 2y agoExplain → -
searchall ⑂
强大的敏感信息搜索工具
★ 0 2y agoExplain → -
vagent ⑂
多功能 java agent 内存马
★ 0 2y agoExplain → -
MDPOCS ⑂
猫蛋儿安全团队编写的poc能报就能打。企业微信、海康、Metabase、Openfire、泛微OA......
★ 0 2y agoExplain → -
XiebroC2 ⑂
Go编写的多人运动渗透测试图形化框架、支持lua插件扩展、自定义多个模块、自定义shellcode、文件管理、进程管理、内存加载、反向代理等功能
★ 0 2y agoExplain → -
Frchannel ⑂
帆软bi反序列化漏洞利用工具
★ 0 2y agoExplain → -
SaiDict ⑂
弱口令,敏感目录,敏感文件等渗透测试常用攻击字典
★ 0 4y agoExplain → -
Khepri ⑂
🔥🔥🔥Free,Open-Source,Cross-platform agent and Post-exploiton tool written in Golang and C++, the architecture and usage like Cobalt Strike
★ 0 4y agoExplain → -
java-impacket-gui ⑂
java-impacket-gui
★ 0 2y agoExplain → -
AttackRMI-2024 ⑂
No description.
★ 0 2y agoExplain → -
DruidCrack ⑂
Druid 密文解密工具
★ 0 5y agoExplain → -
command ⑂
红队常用命令速查
★ 0 2y agoExplain → -
PentestDB ⑂
各种数据库的利用姿势
★ 0 3y agoExplain → -
Hvv2023--- ⑂
HW2023@POC@EXP@CVE-2023-2023
★ 0 2y agoExplain → -
Fuzz_dic ⑂
参数 | 字典 collections
★ 0 5y agoExplain → -
onlyoffice ⑂
CVE's for onlyoffice
★ 0 3y agoExplain → -
SecurityList ⑂
A list for Web Security and Code Audit
★ 0 3y agoExplain → -
Vulnerability-Wiki ⑂
一个基于 docsify 的综合漏洞知识库,目前漏洞数量 900+
★ 0 3y agoExplain → -
utools ⑂
No description.
★ 0 3y agoExplain → -
YonyouNC_Tip ⑂
No description.
★ 0 4y agoExplain → -
JNDIExploit-3 ⑂
No description.
★ 0 3y agoExplain → -
Goby ⑂
No description.
★ 0 3y agoExplain → -
goby-pocs ⑂
List of pocs for goby
★ 0 3y agoExplain → -
wmi-hack-py ⑂
No description.
★ 0 3y agoExplain → -
YongyouNC-Unserialize-Tools ⑂
用友NC反序列化漏洞payload生成
★ 0 3y agoExplain → -
urlext ⑂
爬取并筛选登录后台的静态爬虫
★ 0 5y agoExplain → -
impacket-for-windows-09-24 ⑂
No description.
★ 0 4y agoExplain → -
PHPwebshell ⑂
一些自己无聊写的免杀php木马,404页面伪装大马-Apache+Nginx版本,phpinfo伪装马,404页面代码执行一句话,phpinfo代码执行一句话
★ 0 3y agoExplain → -
gogo ⑂
面向红队的, 高度可控可拓展的自动化引擎
★ 0 3y agoExplain → -
Gh0st2023 ⑂
重写免杀版Gh0st远控、大灰狼远控免杀,目前可免杀360、火绒、腾讯电脑管家等主流杀软。
★ 0 3y agoExplain → -
SocialEngineeringDictionaryGenerator ⑂
社会工程学密码生成器,是一个利用个人信息生成密码的工具
★ 0 3y agoExplain → -
PwdBUD ⑂
一款SRC密码生成工具,尝试top字典无果后,可以根据域名、公司名等因素来生成特定的字典
★ 0 4y agoExplain → -
HTTPHeadModifer ⑂
一款快速修改HTTP数据包头的Burp Suite插件
★ 0 7y agoExplain → -
PeiQi-WIKI-POC ⑂
鹿不在侧,鲸不予游🐋
★ 0 5y agoExplain → -
PeiQi-WIKI-Book-2023-3.31 ⑂
面向网络安全从业者的知识文库🍃
★ 0 3y agoExplain → -
rakshasa ⑂
基于go编写的跨平台、稳定、隐秘的多级代理内网穿透工具
★ 0 3y agoExplain → -
NacosCheck ⑂
Nacos默认密钥导致的身份认证绕过漏洞以及未授权漏洞检测
★ 0 3y agoExplain → -
ObfLoader ⑂
MAC, IPv4, UUID shellcode Loaders and Obfuscators to obfuscate the shellcode and using some native API to converts it to it binary format and loads it.
★ 0 3y agoExplain → -
noterce ⑂
一种另辟蹊径的免杀执行系统命令的木马
★ 0 3y agoExplain → -
JDumpSpider ⑂
HeapDump敏感信息提取工具
★ 0 3y agoExplain → -
APT38-0day-Stealer ⑂
APT38 Tactic PoC for Stealing 0days
★ 0 3y agoExplain → -
suo5 ⑂
A high-performance http proxy tunneling tool
★ 0 3y agoExplain → -
winlog ⑂
一款基于go的windows信息收集工具,主要收集目标机器rdp端口、mstsc远程连接记录、mstsc密码和安全事件中4624、4625登录事件记录
★ 0 4y agoExplain → -
wmiexec-RegOut ⑂
Modify version of impacket wmiexec.py, get output(data,response) from registry, don't need SMB connection, also bypassing antivirus-software in lateral movement like WMIHACKER.
★ 0 3y agoExplain → -
Weblogic-CVE-2023-21839 ⑂
No description.
★ 0 3y agoExplain → -
IIS_backdoor ⑂
backdoor
★ 0 6y agoExplain → -
NetDLLSpy ⑂
.NET后渗透下的权限维持,附下载DLL
★ 0 8y agoExplain → -
probable_subdomains ⑂
Subdomains analysis and generation tool. Reveal the hidden!
★ 0 3y agoExplain → -
tomcat-backdoor ⑂
No description.
★ 0 4y agoExplain → -
rsmaker ⑂
基于rust的免杀、捆绑框架
★ 0 3y agoExplain → -
CodeQLpy ⑂
No description.
★ 0 3y agoExplain → -
RPCSCAN ⑂
RPC远程主机信息匿名扫描工具
★ 0 3y agoExplain → -
zentaopms_poc ⑂
禅道相关poc
★ 0 3y agoExplain → -
JavaFileDict ⑂
Java应用的一些配置文件字典,来源于公开的字典与平时收集
★ 0 4y agoExplain → -
AutoDomain ⑂
自动提取主域名/IP,并调用fofa、quake、hunter等网络资产测绘系统搜集子域名,可配合指纹扫描工具达到快速资产整理
★ 0 3y agoExplain → -
RedTeam-Tools ⑂
Tools and Techniques for Red Team / Penetration Testing
★ 0 3y agoExplain → -
CVE-2022-46169 ⑂
CVE-2022-46169 Cacti remote_agent.php Unauthenticated Command Injection.
★ 0 3y agoExplain → -
iisproxy ⑂
通过websocket在IIS8(Windows Server 2012)以上实现socks5代理
★ 0 3y agoExplain → -
my-re0-k8s-security ⑂
:atom: [WIP] 整理过去的分享,从零开始的Kubernetes攻防 🧐
★ 0 4y agoExplain → -
dnSpy ⑂
Unofficial revival of the well known .NET debugger and assembly editor, dnSpy
★ 0 3y agoExplain → -
Packer-Fuzzer ⑂
Packer Fuzzer is a fast and efficient scanner for security detection of websites constructed by javascript module bundler such as Webpack.
★ 0 3y agoExplain → -
apache-rootkit ⑂
A malicious Apache module with rootkit functionality
★ 0 11y agoExplain → -
swagger-hack ⑂
自动化爬取并自动测试所有swagger-ui.html显示的接口
★ 0 5y agoExplain → -
Bankai ⑂
Another Go Shellcode Loader
★ 0 5y agoExplain → -
ncDecode ⑂
用友nc数据库密码解密
★ 0 5y agoExplain → -
schtask-bypass ⑂
免杀计划任务进行权限维持,过主流杀软。 A schtask tool bypass anti-virus
★ 0 3y agoExplain → -
Web-CTF-Cheatsheet ⑂
Web CTF CheatSheet 🐈
★ 0 3y agoExplain → -
Ingram ⑂
网络摄像头漏洞扫描工具 | Webcam vulnerability scanning tool
★ 0 3y agoExplain → -
lib_mysqludf_sys ⑂
a 'pentest' udf plugin of MySQL.
★ 0 4y agoExplain → -
CVE-2022-30075 ⑂
Tp-Link Archer AX50 Authenticated RCE (CVE-2022-30075)
★ 0 3y agoExplain → -
ScanShiro ⑂
一个批量扫描shiro漏洞的工具,支持AES/CMG
★ 0 4y agoExplain → -
KeyBoardHook ⑂
c# 全局/指定进程HOOK 键盘记录 窗口监听
★ 0 4y agoExplain → -
ProxyNotShell-PoC ⑂
No description.
★ 0 3y agoExplain → -
goShellCodeByPassVT ⑂
通过线程注入及-race参数免杀全部VT
★ 0 5y agoExplain → -
ssSocks5 ⑂
魔改shadowsocks,实现socks5内网穿透。
★ 0 3y agoExplain → -
Holmes ⑂
Website FingerPrint Recognition
★ 0 4y agoExplain → -
katana ⑂
A next-generation crawling and spidering framework.
★ 0 3y agoExplain → -
uncover ⑂
Quickly discover exposed hosts on the internet using multiple search engines.
★ 0 3y agoExplain → -
RedisModules-ExecuteCommand-for-Windows ⑂
可在Windows下执行系统命令的Redis模块,可用于Redis主从复制攻击。
★ 0 5y agoExplain → -
xRay_Scanner_Cracked_1.9.1 ⑂
xRay is a fairly powerful scanner that will allow you to scan and scout targets
★ 0 3y agoExplain → -
burpplug-in
No description.
★ 0 8y agoExplain → -
fastjson_payload ⑂
No description.
★ 0 3y agoExplain → -
HW ⑂
护网漏洞汇总
★ 0 3y agoExplain → -
Heimdallr ⑂
一款完全被动监听的谷歌插件,用于高危指纹识别、蜜罐特征告警和拦截、机器特征对抗
★ 0 3y agoExplain → -
hackerxj007
No description.
★ 0 3y agoExplain → -
microwaveo ⑂
将dll exe 等转成shellcode 最后输出exe 可定制加载器模板 支持白文件的捆绑 shellcode 加密
★ 0 3y agoExplain → -
Domain-penetration_one-stop ⑂
域渗透一条龙
★ 0 4y agoExplain → -
JavaSec-1 ⑂
a rep for documenting my study, may be from 0 to 0.1
★ 0 3y agoExplain → -
HackJava ⑂
《Java安全-只有Java安全才能拯救宇宙》Only Java Security Can Save The Universe.
★ 0 3y agoExplain → -
OA-EXPTOOL ⑂
OA综合利用工具,集合将近20款OA漏洞批量扫描
★ 0 3y agoExplain → -
rsocx ⑂
A bind/reverse Socks5 proxy server.
★ 0 3y agoExplain → -
CVE-2021-4034-NoGCC ⑂
CVE-2021-4034简单优化,以应对没有安装gcc和make的目标环境
★ 0 4y agoExplain → -
CVE-2021-4035 ⑂
CVE-2021-4034 Add Root User - Pkexec Local Privilege Escalation
★ 0 4y agoExplain → -
vulnerability-1 ⑂
收集、整理、修改互联网上公开的漏洞POC
★ 0 3y agoExplain → -
JavaSecurityCourse ⑂
Hacking and Securing Java
★ 0 7y agoExplain → -
JavaSec-2 ⑂
个人学习Java安全的笔记
★ 0 3y agoExplain → -
FuzzPayloadGennerator ⑂
Burp之Intruder的物尽其用插件
★ 0 3y agoExplain → -
HRSword ⑂
火绒剑独立版
★ 0 3y agoExplain → -
SharpEventPersist ⑂
Persistence by writing/reading shellcode from Event Log
★ 0 4y agoExplain → -
OrcaC2 ⑂
OrcaC2是一款基于Websocket加密通信的多功能C&C框架,使用Golang实现。
★ 0 3y agoExplain → -
VcenterKiller ⑂
一款针对Vcenter的综合利用工具,包含目前最主流的CVE-2021-21972、CVE-2021-21985以及CVE-2021-22005以及log4j,提供一键上传webshell,命令执行或者上传公钥使用SSH免密连接
★ 0 3y agoExplain → -
Havoc ⑂
The Havoc Framework
★ 0 3y agoExplain → -
ExpToPocsuite3 ⑂
goby exp批量转换为pocsuite3 exp脚本
★ 0 3y agoExplain → -
grafanaExp ⑂
A exploit tool for Grafana Unauthorized arbitrary file reading vulnerability (CVE-2021-43798), it can burst plugins / extract secret_key / decrypt data_source info automatic.
★ 0 4y agoExplain → -
msmap ⑂
Msmap is a Memory WebShell Generator.
★ 0 3y agoExplain → -
cve-2022-39197 ⑂
cve-2022-39197 poc
★ 0 3y agoExplain → -
CodeqlNote ⑂
Codeql学习笔记
★ 0 4y agoExplain → -
hack-fastjson-1.2.80 ⑂
No description.
★ 0 3y agoExplain → -
Behinder-Source ⑂
Source code of Behinder, a shell manager.冰蝎源码,反编译,当前版本3.0 Beta6,支持内存马注入
★ 0 5y agoExplain → -
CrackSleeve4.7 ⑂
No description.
★ 0 3y agoExplain → -
EyeWorm ⑂
一款强大的内网收集信息工具,支持文件、进程、注册表、命令、DpApi凭据收集,支持键盘记录,常驻,oss服务器定时回传的功能
★ 0 3y agoExplain → -
Fuzzing-Dicts ⑂
Web Security Dictionary
★ 0 4y agoExplain → -
CodeReviewTools ⑂
通过正则搜索、批量反编译特定Jar包中的class名称
★ 0 4y agoExplain → -
DropLabTools ⑂
一个垃圾利用工具,半自动发包机器
★ 0 3y agoExplain → -
JNDIEXP ⑂
JDNI在java高版本的利用工具
★ 0 4y agoExplain → -
JNDI-Injection-Exploit-Plus ⑂
50+ Gadgets(20 More than ysoserial). JNDI-Injection-Exploit-Plus is a tool for generating workable JNDI links and provide background services by starting RMI server,LDAP server and HTTP server.
★ 0 3y agoExplain → -
fuso ⑂
一款体积小, 快速, 稳定, 高效, 轻量的内网穿透, 端口转发工具 支持多连接,级联代理,传输加密 (A small volume, fast, stable, efficient, and lightweight intranet penetration, port forwarding tool supports multiple connections, cascading proxy, and transmission encryption)
★ 0 3y agoExplain → -
GodzillaSource ⑂
Godzilla4.01 decompile code
★ 0 4y agoExplain → -
MyMemShellStudy ⑂
No description.
★ 0 4y agoExplain → -
MyRedTeamTools ⑂
MyRedTeamTools
★ 0 3y agoExplain → -
RW_Password ⑂
此项目用来提取收集以往泄露的密码中符合条件的强弱密码
★ 0 7y agoExplain → -
adduser ⑂
Programmatically create an administrative user under Windows
★ 0 9y agoExplain → -
j2osWin ⑂
No description.
★ 0 4y agoExplain → -
webshell-1 ⑂
This is a webshell open source project
★ 0 4y agoExplain → -
fastjson-bypass-autotype-1.2.68 ⑂
fastjson bypass autotype 1.2.68 with Throwable and AutoCloseable.
★ 0 4y agoExplain → -
anhkgg-tools ⑂
Anhkgg's Tools
★ 0 5y agoExplain → -
antiHoneypot ⑂
一个拦截 XSSI & 识别Web蜜罐的Chrome扩展
★ 0 4y agoExplain → -
2022-HW-POC ⑂
2022 护网行动 POC 整理
★ 0 4y agoExplain → -
SharpKatz ⑂
Porting of mimikatz sekurlsa::logonpasswords, sekurlsa::ekeys and lsadump::dcsync commands
★ 0 4y agoExplain → -
spring-boot-upload-file-lead-to-rce-tricks ⑂
spring boot Fat Jar 任意写文件漏洞到稳定 RCE 利用技巧
★ 0 5y agoExplain → -
DnslogCmdEcho ⑂
命令执行不回显但DNS协议出网的命令回显场景解决方案
★ 0 4y agoExplain → -
lanproxy ⑂
lanproxy是一个将局域网个人电脑、服务器代理到公网的内网穿透工具,支持tcp流量转发,可支持任何tcp上层协议(访问内网网站、本地支付接口调试、ssh访问、远程桌面、http代理、https代理、socks5代理...)。技术交流QQ群 736294209
★ 0 4y agoExplain → -
CDK ⑂
📦 Make security testing of K8s, Docker, and Containerd easier.
★ 0 4y agoExplain → -
WebShell ⑂
Webshell && Backdoor Collection
★ 0 6y agoExplain → -
SpringExploit ⑂
🚀 一款为了学习go而诞生的漏洞利用工具
★ 0 4y agoExplain → -
mssqlproxy ⑂
mssqlproxy is a toolkit aimed to perform lateral movement in restricted environments through a compromised Microsoft SQL Server via socket reuse
★ 0 5y agoExplain → -
Code-Execution ⑂
Executables that execute other stuff
★ 0 8y agoExplain → -
ysoserial-2 ⑂
ysoserial for su18
★ 0 4y agoExplain → -
FuckMemshell ⑂
内存马持久化
★ 0 4y agoExplain → -
CVE-2022-26134-Godzilla-MEMSHELL ⑂
No description.
★ 0 4y agoExplain → -
RouteVulScan ⑂
Burpsuite - Route Vulnerable Scanning 递归式被动检测脆弱路径的burp插件
★ 0 4y agoExplain → -
APIKit ⑂
APIKit:Discovery, Scan and Audit APIs Toolkit All In One.
★ 0 4y agoExplain → -
WindowsElevation ⑂
Windows Elevation(持续更新)
★ 0 5y agoExplain → -
Information_Security_Books ⑂
信息安全方面的书籍书籍
★ 0 4y agoExplain → -
attackRmi ⑂
No description.
★ 0 4y agoExplain → -
GBByPass ⑂
冰蝎 哥斯拉 WebShell bypass
★ 0 4y agoExplain → -
evilarc ⑂
Create tar/zip archives that can exploit directory traversal vulnerabilities
★ 0 5y agoExplain → -
JNDIKit ⑂
JNDI/LDAP注入利用工具,对命令进行两种编码,支持多种绕过高版本JDK的方式(参考大佬代码造的轮子)
★ 0 4y agoExplain → -
ysoserial-1 ⑂
ysoserial修改版,着重修改ysoserial.payloads.util.Gadgets.createTemplatesImpl使其可以通过引入自定义class的形式来执行命令、内存马、反序列化回显。
★ 0 4y agoExplain → -
PocList2 ⑂
Alibaba-Nacos-Unauthorized/ApacheDruid-RCE_CVE-2021-25646/MS-Exchange-SSRF-CVE-2021-26885/Oracle-WebLogic-CVE-2021-2109_RCE/RG-CNVD-2021-14536/RJ-SSL-VPN-UltraVires/Redis-Unauthorized-RCE/TDOA-V11.7-GetOnlineCookie/VMware-vCenter-GetAnyFile/yongyou-GRP-U8-XXE/Oracle-WebLogic-CVE-2020-14883/Oracle-WebLogic-CVE-2020-14882/Apache-Solr-GetAnyFile/F5-BIG-IP-CVE-2021-22986/Sonicwall-SSL-VPN-RCE/GitLab-Graphql-CNVD-2021-14193/D-Link-DCS-CVE-2020-25078/WLAN-AP-WEA453e-RCE/360TianQing-Unauthorized/360TianQing-SQLinjection/FanWeiOA-V8-SQLinjection/QiZhiBaoLeiJi-AnyUserLogin/QiAnXin-WangKangFirewall-RCE/金山-V8-终端安全系统/NCCloud-SQLinjection/ShowDoc-RCE
★ 0 5y agoExplain → -
LSASSDumper ⑂
C++ to dump the LSASS process
★ 0 7y agoExplain →
No repos match these filters.