bowman03 Goto Github PK
Type: User
Type: User
JNDI服务利用工具 RMI/LDAP,支持部分场景回显、内存shell,高版本JDK场景下利用等,fastjson rce命令执行,log4j rce命令执行 漏洞检测辅助工具
对原版https://github.com/feihong-cs/JNDIExploit 进行了实用化修改
JSFinder is a tool for quickly extracting URLs and subdomains from JS files on a website.
fastjson漏洞批量检测工具
Burp插件,Malleable C2 Profiles生成器;可以通过Burp代理选中请求,生成Cobalt Strike的profile文件(CSprofile)
K8工具合集(内网渗透/提权工具/远程溢出/漏洞利用/扫描工具/密码破解/免杀工具/Exploit/APT/0day/Shellcode/Payload/priviledge/BypassUAC/OverFlow/WebShell/PenTest) Web GetShell Exploit(Struts2/Zimbra/Weblogic/Tomcat/Apache/Jboss/DotNetNuke/zabbix)
linux payload module
The Kali NetHunter Project
类似按键精灵的鼠标键盘录制和自动化操作 模拟点击和键入 | automate mouse clicks and keyboard input
A burp extension that add some useful function to Context Menu 添加一些右键菜单让burp用起来更顺畅
Kunyu, more efficient corporate asset collection
自动化监控赏金项目-定期收集资产,漏洞进行推送(现在可以稳定收菜,有问题issues我)
Study Notes For Web Hacking / Web安全学习笔记
A python script that finds endpoints in JavaScript files
Linux privilege escalation auditing tool
linux-kernel-exploits Linux平台提权漏洞集合
LoaderGo-快速生成免杀木马GUI版本,bypass主流杀软
Investigate malicious Windows logon by visualizing and analyzing Windows event log
Low Orbit Ion Cannon - An open source network stress tool, written in C#. Based on Praetox's LOIC project. USE ON YOUR OWN RISK. WITHOUT ANY EXPRESS OR IMPLIED WARRANTIES.
TCP port scanner, spews SYN packets asynchronously, scanning entire Internet in under 5 minutes.
Metasploit Framework
Best DDoS Attack Script Python3, (Cyber / DDos) Attack With 56 Methods
A little tool to play with Windows security
Android渗透测试脚本, by Tr0e.
mobsfscan is a static analysis tool that can find insecure code patterns in your Android and iOS source code. Supports Java, Kotlin, Swift, and Objective C Code. mobsfscan uses MobSF static analysis rules and is powered by semgrep and libsast pattern matcher.
Infection Monkey - An automated pentest tool
An open source tool focused on software supply chain security. 墨菲安全专注于软件供应链安全,具备专业的软件成分分析(SCA)、漏洞检测、专业漏洞库。
OAExploit一款基于产品的一键扫描工具。
事件驱动的渗透测试扫描器 Event-driven pentest scanner
NetBIOS scanning tool. Currently segfaults!
A declarative, efficient, and flexible JavaScript library for building user interfaces.
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
An Open Source Machine Learning Framework for Everyone
The Web framework for perfectionists with deadlines.
A PHP framework for web artisans
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
Some thing interesting about web. New door for the world.
A server is a program made to process requests and deliver data to clients.
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
Some thing interesting about visualization, use data art
Some thing interesting about game, make everyone happy.
We are working to build community through open source technology. NB: members must have two-factor auth.
Open source projects and samples from Microsoft.
Google ❤️ Open Source for everyone.
Alibaba Open Source for everyone
Data-Driven Documents codes.
China tencent open source team.