jarlob Goto Github PK
Name: Jaroslav Lobačevski
Type: User
Bio: Security Researcher @ghsecuritylab
Twitter: yarlob
Blog: jarlob.github.io
Name: Jaroslav Lobačevski
Type: User
Bio: Security Researcher @ghsecuritylab
Twitter: yarlob
Blog: jarlob.github.io
OAuth Security Cheatsheet
📱 objection - runtime mobile exploration
Security Analysis tool for WebAssembly module (wasm) and Blockchain Smart Contracts (BTC/ETH/NEO/EOS)
A .net OLE/COM viewer and inspector to merge functionality of OleView and Test Container
Online tools provides md2, md5, sha1, sha2, sha512, bas64, html encode / decode functions
This repository contains the code for a fuzzing prototype for the OP-TEE system call interface using AFL.
Orchard is a free, open source, community-focused Content Management System built on the ASP.NET MVC platform.
Orchard Core is an open-source modular and multi-tenant application framework built with ASP.NET Core, and a content management system (CMS) built on top of that framework.
OSS-Fuzz - continuous fuzzing for open source software.
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
pdbex is a utility for reconstructing structures and unions from the PDB into compilable C headers
Portable Executable (PE) library written in .Net
This will assist you in the finding of potentially vulnerable PHP code. Each type of grep command is categorized in the type of vulnerabilities you generally find with that function.
PHPGGC is a library of PHP unserialize() payloads along with a tool to generate them, from command line or programmatically.
Exploit for CVE-2019-11043
Piranha CMS is the friendly editor-focused CMS for .NET Core that can be used both as an integrated CMS or as a headless API.
Proof of Concepts
Research on GraphQL from an AppSec point of view.
A proof-of-concept subject interface package (SIP) used to demonstrate digital signature subversion attacks.
A Chrome Extension to track postMessage usage (url, domain and stack) both by logging using CORS and also visually as an extension-icon
My musings with PowerShell
PowerSploit - A PowerShell Post-Exploitation Framework
Client Side Prototype Pollution Scanner
Black-Box Assessment of Pseudorandom Algorithms
A repository of my presentations
Collection of my slide decks
Privilege Escalation Enumeration Script for Windows
Inject PowerShell into any process
A declarative, efficient, and flexible JavaScript library for building user interfaces.
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
An Open Source Machine Learning Framework for Everyone
The Web framework for perfectionists with deadlines.
A PHP framework for web artisans
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
Some thing interesting about web. New door for the world.
A server is a program made to process requests and deliver data to clients.
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
Some thing interesting about visualization, use data art
Some thing interesting about game, make everyone happy.
We are working to build community through open source technology. NB: members must have two-factor auth.
Open source projects and samples from Microsoft.
Google ❤️ Open Source for everyone.
Alibaba Open Source for everyone
Data-Driven Documents codes.
China tencent open source team.