shelter4382 Goto Github PK
Type: User
Bio: 一个正在努力成长的普通人
Type: User
Bio: 一个正在努力成长的普通人
开源多功能机场后端, 协议支持 V2Ray(VMess), Trojan, Shadowsocks(单端口多用户);面板支持 SSPanel, v2board, django-sspanel.
本软件首先集成危害性较大框架和部分主流cms的rce(无需登录,或者登录绕过执行rce)和反序列化(利用链简单)。傻瓜式导入url即可实现批量getshell。批量自动化测试。例如:Thinkphp,Struts2,weblogic。出现的最新漏洞进行实时跟踪并且更新例如:log4jRCE,向日葵RCE 等等.
渗透测试☞经验/思路/总结/笔记
重生之我是赏金猎人系列,分享自己和团队在SRC、项目实战漏洞测试过程中的有趣案例
A list of interesting payloads, tips and tricks for bug bounty hunters.
一个全新的敏感文件发现工具
一款功能强大的漏洞扫描器,子域名爆破使用aioDNS,asyncio异步快速扫描,覆盖目标全方位资产进行批量漏洞扫描,中间件信息收集,自动收集ip代理,探测Waf信息时自动使用来保护本机真实Ip,在本机Ip被Waf杀死后,自动切换代理Ip进行扫描,Waf信息收集(国内外100+款waf信息)包括安全狗,云锁,阿里云,云盾,腾讯云等,提供部分已知waf bypass 方案,中间件漏洞检测(Thinkphp,weblogic等 CVE-2018-5955,CVE-2018-12613,CVE-2018-11759等),支持SQL注入, XSS, 命令执行,文件包含, ssrf 漏洞扫描, 支持自定义漏洞邮箱推送功能
Tomcat-Ajp协议文件读取漏洞
cobaltstrike4.4\4.3版本破解、去除checksum8特征、bypass BeaconEye
Come and join us, we need you!
CVE-2022-0995 exploit
A collection of proof-of-concept exploit scripts written by the team at Rhino Security Labs for various CVEs.
深度学习炼丹笔记,包含深度学习数学基础知识、神经网络基础部件详解、构建 CNN 网络总结,深度学习炼丹策略,以及如何实现深度学习推理框架实战。
EHole(棱洞)3.0 重构版-红队重点攻击系统指纹探测工具
应急响应实战笔记,一个安全工程师的自我修养。
Exphub[漏洞利用脚本库] 包括Webloigc、Struts2、Tomcat、Nexus、Solr、Jboss、Drupal的漏洞利用脚本,最新添加CVE-2020-14882、CVE-2020-11444、CVE-2020-10204、CVE-2020-10199、CVE-2020-1938、CVE-2020-2551、CVE-2020-2555、CVE-2020-2883、CVE-2019-17558、CVE-2019-6340
一款红队在大量的资产中存活探测与重点攻击系统指纹探测工具
🔥火麒麟-网络安全应急响应工具(系统痕迹采集)Cybersecurity emergency response tool.
《Hello 算法》:动画图解、一键运行的数据结构与算法教程,支持 Python, C++, Java, C#, Go, Swift, JS, TS, Dart, Rust, C, Zig 等语言。English edition ongoing
OA漏洞利用工具
Sample codes written for the Hackers to Hackers Conference magazine 2017 (H2HC).
自己学习java安全的一些总结,主要是安全审计相关
CVE-2017-12149 jboss反序列化 可回显
JSFinder is a tool for quickly extracting URLs and subdomains from JS files on a website.
Micro8 Online
中间件漏洞检测合集 Since 2019-9-15
A fast port scanner written in go with a focus on reliability and simplicity. Designed to be used in combination with other tools for attack surface discovery in bug bounties and pentests
OneForAll是一款功能强大的子域收集工具
渗透测试常规操作记录
各种数据库的利用姿势
A declarative, efficient, and flexible JavaScript library for building user interfaces.
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
An Open Source Machine Learning Framework for Everyone
The Web framework for perfectionists with deadlines.
A PHP framework for web artisans
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
Some thing interesting about web. New door for the world.
A server is a program made to process requests and deliver data to clients.
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
Some thing interesting about visualization, use data art
Some thing interesting about game, make everyone happy.
We are working to build community through open source technology. NB: members must have two-factor auth.
Open source projects and samples from Microsoft.
Google ❤️ Open Source for everyone.
Alibaba Open Source for everyone
Data-Driven Documents codes.
China tencent open source team.