不知名的ID🤔:CFHB
不知名的公众号😄:✨我的安全学习笔记圈✨
最近在做的事🔭:
- Web攻防(P0)
- 造轮子(P0)
- Android安全(P1)
- CodeQL白盒扫描 (P5)
- SRC挖掘(P10)
联系方式💬 :公众号留言
Name: Komi
Type: User
Bio: 代码就在眼前,我却不识漏洞。
Location: Cheng Du
An Out-of-Band XXE server for retrieving file contents over FTP.
ActiveScan++ Burp Suite Plugin
Java After-Deserialization Attack
Albatar is a SQLi exploitation framework in Python
This script grab public report from hacker one and make some folders with poc videos
the cross platform webshell tool in .NET
安卓逆向工程 ELFRead、Frida、FridaDump、DexDump、SoDump、Ghidra、IdaPro、GDA、Jadx、Objection、Xposed...
Python3编写的CMS漏洞检测框架
蚁逅 docker 版
Automatic backdooring apk with meterpreter (PoC)
ARL(Asset Reconnaissance Lighthouse)资产侦察灯塔系统旨在快速侦察与目标关联的互联网资产,构建基础资产信息库。 协助甲方安全团队或者渗透测试人员有效侦察和检索资产,发现存在的薄弱点和攻击面。
通过 Webshell 创建 BugScan 节点(需要目标支持 Python2.7)
ATT&CK实操
AuthMatrix is a Burp Suite extension that provides a simple way to test authorization in web applications and web services.
Auto Root Exploit Tool
Burp插件,根据自定义来达到对数据包的处理(适用于加解密、爆破等),类似mitmproxy,不同点在于经过了burp中转,在自动加解密的基础上,不影响APP、网站加解密正常逻辑等。
phpstudy批量检测mysql弱口令
将自动爬虫的结果判断是否属于hooks,并不断抓取url爬啊爬。
ADB Usage Complete / ADB 用法大全
Awesome Burp Suite Resources. 400+ open source Burp plugins, 500+ posts and videos.
Java资源大全中文版,包括开发库、开发工具、网站、博客、微信、微博等,由伯乐在线持续更新。
PHP Webshell with handy features
多线程百度云(私密分享)密码爆破工具
http://x0day.me/archives/bannerscan-py.html
This is a small tool which can be used to decompile jars in bulk. Sometimes maybe helpful:-)
A webshell connection tool with customized WAF bypass payloads
爆破字典
兄弟域名查询
Brosec - An interactive reference tool to help security professionals utilize useful payloads and commands.
A declarative, efficient, and flexible JavaScript library for building user interfaces.
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
An Open Source Machine Learning Framework for Everyone
The Web framework for perfectionists with deadlines.
A PHP framework for web artisans
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
Some thing interesting about web. New door for the world.
A server is a program made to process requests and deliver data to clients.
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
Some thing interesting about visualization, use data art
Some thing interesting about game, make everyone happy.
We are working to build community through open source technology. NB: members must have two-factor auth.
Open source projects and samples from Microsoft.
Google ❤️ Open Source for everyone.
Alibaba Open Source for everyone
Data-Driven Documents codes.
China tencent open source team.