238Ver/CDK
📦 Make security testing of K8s, Docker, and Containerd easier.
📦 Make security testing of K8s, Docker, and Containerd easier.
SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.
Maye Nano 是一款专注于快速启动工具。我们深知效率的本质是减法而非加法,因此摒弃一切冗余,仅保留最极致的启动体验。它坚持绿色无污染设计,不产生系统垃圾,旨在为 Windows 提供一种更轻盈、更现代的操控方式。
Fully autonomous AI Agents system capable of performing complex penetration testing tasks
智能渗透Agent Manager/Observer/Solver 多角色架构,基于 pi-mono SDK。
Windows privilege escalation using RegPwn
Copy Fail (CVE-2026-31431): 9-year-old Linux kernel LPE found by Theori's Xint Code
Termius汉化
A sophisticated, cross-platform exploit generator for **CVE-2026-34621** – a critical prototype pollution vulnerability in Adobe Acrobat and Reader that leads to sandbox escape and arbitrary code execution on Windows and macOS.
DeepAudit:人人拥有的 AI 黑客战队,让漏洞挖掘触手可及。国内首个开源的代码漏洞挖掘多智能体系统。小白一键部署运行,自主协作审计 + 自动化沙箱 PoC 验证。支持 Ollama 私有部署 ,一键生成报告。支持中转站。让安全不再昂贵,让审计不再复杂。
Repository hosting the bluehammer vulnerability
Claude Code Snapshot for Research. All original source code is the property of Anthropic.
cc完整版,含手册,编译等
Tool for port forwarding & intranet proxy
多功能 java agent 内存马
Neo-reGeorg is a project that seeks to aggressively refactor reGeorg
红队浏览器插件-检测VUE站点未授权漏洞
DKMC - Dont kill my cat - Malicious payload evasion tool
vehsyscall:a syscall project that may bypass EDR
AdaptixC2 is a highly modular advanced redteam toolkit
A curated directory of .onion sites, hidden services, and dark web resources. Updated regularly and designed for easy navigation and categorization.
备份的漏洞库,3月开始我们来维护
一个攻防知识库。A knowledge base for red teaming and offensive security.
Change your current Java version with one line
Share Things Related to Java - Java安全漫谈笔记相关内容
ZKar is a Java serialization protocol analysis tool implement in Go.
PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)
EV 录屏修复工具
红队渗透测试|攻防|学习|工具|分析|研究资料汇总
A vulnerability exists within Mirth Connect due to its mishandling of deserialized data. This vulnerability can be leveraged by an attacker using a crafted HTTP request to execute OS commands within the context of the target application.