secxzy Goto Github PK
Type: User
Type: User
个人域渗透学习笔记
CDK is an open-sourced container penetration toolkit, offering stable exploitation in different slimmed containers without any OS dependency. It comes with penetration tools and many powerful PoCs/EXPs helps you to escape container and takeover K8s cluster easily.
CTFs as you need them
这里保留着部分脏牛漏洞的利用代码
The Cyber Swiss Army Knife - a web app for encryption, encoding, compression and data analysis
Vagrant & Packer scripts to build a lab environment complete with security tooling and logging best practices
Dirty COW
The Docker Bench for Security is a script that checks for dozens of common best-practices around deploying Docker containers in production.
DongTai is an interactive application security testing(IAST) product that supports the detection of OWASP WEB TOP 10 vulnerabilities, multi-request related vulnerabilities (including logic vulnerabilities, unauthorized access vulnerabilities, etc.), third-party component vulnerabilities, etc.
Elasticsearch 可视化DashBoard, 支持Es监控、实时搜索,Index template快捷替换修改,索引列表信息查看, SQL converts to DSL等
Monitoring and Management Web Application for ElasticSearch instances and clusters.
fastjson remote code execute poc 直接用intellij IDEA打开即可 首先编译得到Test.class,然后运行Poc.java
Platform to host Capture the Flag competitions
《FRIDA操作手册》by @hluwa @r0ysue
Syslog server library for go.
洞察-宜信集应用系统资产管理、漏洞全生命周期管理、安全知识库管理三位一体的平台。
Jumpserver是全球首款完全开源的堡垒机,是符合 4A 的专业运维审计系统。
Radar visualization for Kibana
LXC - Linux Containers
Moby Project - a collaborative project for the container ecosystem to assemble container-based systems
一款轻量级、功能强大的内网穿透代理服务器。支持tcp、udp流量转发,支持内网http代理、内网socks5代理,同时支持snappy压缩、站点保护、加密传输、多路复用、header修改等。支持web图形化管理,集成多用户模式。
Mapping the MITRE ATT&CK Matrix with Osquery
PatrOwl - Open Source, Smart and Scalable Security Operations Orchestration Platform
渗透测试用到的东东
收集一些比较优秀的开源安全项目,以帮助甲方安全从业人员构建企业安全能力。
SDL China
越权检测工具
2018-2020青年安全圈-活跃技术博主/博客
A declarative, efficient, and flexible JavaScript library for building user interfaces.
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
An Open Source Machine Learning Framework for Everyone
The Web framework for perfectionists with deadlines.
A PHP framework for web artisans
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
Some thing interesting about web. New door for the world.
A server is a program made to process requests and deliver data to clients.
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
Some thing interesting about visualization, use data art
Some thing interesting about game, make everyone happy.
We are working to build community through open source technology. NB: members must have two-factor auth.
Open source projects and samples from Microsoft.
Google ❤️ Open Source for everyone.
Alibaba Open Source for everyone
Data-Driven Documents codes.
China tencent open source team.