hstwo Goto Github PK
Type: User
Type: User
各种CMS、各种平台、各种系统、各种软件漏洞的EXP、POC 该项目将不断更新
个人维护的安全知识框架,内容包括不仅限于 web安全、工控安全、取证、应急、蓝队设施部署、后渗透、Linux安全、各类靶机writup
阿里云accesskey利用工具
无回显漏洞测试辅助平台,平台使用Java编写,提供DNSLOG,HTTPLOG等功能,辅助渗透测试过程中无回显漏洞及SSRF等漏洞的验证和利用。
攻防演习/渗透测试资产处理小工具,对攻防演习/渗透测试前的信息搜集到的大批量资产/域名进行存活检测、获取标题头、语料提取、常见web端口检测等。
收藏的链接
DecryptTools-综合解密
DirScan是一款探测网站路径存活的工具,扫描批量网站的路径(目录或文件或Api),快速发现薄弱点
DNSLog 是一款监控 DNS 解析记录和 HTTP 访问记录的工具。
Fastjson姿势技巧集合
一款内网综合扫描工具,方便一键自动化、全方位漏扫扫描。
Web Pentesting Fuzz 字典,一个就够了。
F-vuln(全称:Find-Vulnerability)是为了自己工作方便专门编写的一款自动化工具,主要适用于日常安全服务、渗透测试人员和RedTeam红队人员,它集合的功能包括:存活IP探测、开放端口探测、web服务探测、web漏洞扫描、smb爆破、ssh爆破、ftp爆破、mssql爆破等其他数据库爆破工作以及大量web漏洞检测模块。
An advanced cross-platform tool that automates the process of detecting and exploiting SQL injection security flaws
Github Sensitive Information Leakage Monitor(Github信息泄漏监控系统)
Open-Source Phishing Toolkit
K8工具合集(内网渗透/提权工具/远程溢出/漏洞利用/扫描工具/密码破解/免杀工具/Exploit/APT/0day/Shellcode/Payload/priviledge/BypassUAC/OverFlow/WebShell/PenTest) Web GetShell Exploit(Struts2/Zimbra/Weblogic/Tomcat/Apache/Jboss/DotNetNuke/zabbix)
myscan 被动扫描
Neo-reGeorg is a project that seeks to aggressively refactor reGeorg
Intranet penetration tools
poc-collection 是对 github 上公开的 PoC 进行收集的一个项目。
📡 PoC auto collect from GitHub. ⚠️ Be careful Malware.
a lightweight, flexible and novel open source poc verification framework
QQ群关系数据可视化3D力导向图
红蓝对抗以及护网相关工具和资料,内存shellcode(cs+msf)查杀工具
扫描器是来自GitHub平台的开源扫描器的集合,包括子域枚举、数据库漏洞扫描器、弱密码或信息泄漏扫描器、端口扫描器、指纹扫描器以及其他大规模扫描仪、模块扫描器等。对于其他著名的扫描工具,如:awvs、nmap,w3af将不包含在集合范围内。
信息安全面试题汇总
🖤 网络安全与渗透测试工具导航
SpringBoot 相关漏洞学习资料,利用方法和技巧合集,黑盒安全评估 check list
一款高性能 HTTP 代理隧道工具 | A high-performance http proxy tunneling tool
A declarative, efficient, and flexible JavaScript library for building user interfaces.
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
An Open Source Machine Learning Framework for Everyone
The Web framework for perfectionists with deadlines.
A PHP framework for web artisans
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
Some thing interesting about web. New door for the world.
A server is a program made to process requests and deliver data to clients.
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
Some thing interesting about visualization, use data art
Some thing interesting about game, make everyone happy.
We are working to build community through open source technology. NB: members must have two-factor auth.
Open source projects and samples from Microsoft.
Google ❤️ Open Source for everyone.
Alibaba Open Source for everyone
Data-Driven Documents codes.
China tencent open source team.