whesyar Goto Github PK
Type: User
Type: User
各种CMS、各种平台、各种系统、各种软件漏洞的EXP、POC 该项目将不断更新
**蚁剑后渗透框架
一个攻防知识仓库
Some files for bruteforcing certain things.
宝塔面板Windows版提权方法
📦 Make security testing of K8s, Docker, and Containerd easier.
An open-source, free protector for .NET applications
自己开的cs插件
darkPulse是一个用go编写的shellcode Packer,用于生成各种各样的shellcode loader,目前免杀火绒,360,360核晶。
Some Service DCOM Object and SeImpersonatePrivilege abuse.
大灰狼远控木马 V9.5 源码
Flash钓鱼弹窗优化版
fofaX is a command line query tool based on the API of https://fofa.so/, simple is the best!
Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.
跨平台重构了Cobaltstrike Beacon,适配了大部分Beacon的功能,行为对国内主流杀软免杀,支持4.1以上的版本。 A cobaltstrike Beacon bypass anti-virus, supports 4.1+ version.
An advanced cross-platform tool that automates the process of detecting and exploiting SQL injection security flaws
实时监控github上新增的cve和安全工具更新,多渠道推送通知
Golang Bypass Av Generator template
GoScan是采用Golang语言编写的一款分布式综合资产管理系统,适合红队、SRC等使用
Hunter view 是一款Hunter(鹰图平台)资产展示的浏览器油猴插件
无须借助dnslog且完全无害的JNDI反连检测工具,解析RMI和LDAP协议实现,可用于甲方内网自查
结合反射调用、Javac动态编译、ScriptEngine、Expression等技术的一款免杀JSP Webshell生成工具
Kerberos unconstrained delegation abuse toolkit
Kscan是一款纯go开发的轻量级的资产发现工具,可针对指定IP段、资产清单、存活网段自动化进行端口扫描以及TCP指纹识别和Banner抓取,在不发送更多的数据包的情况下尽可能的获取端口更多信息。并且能够针对扫描结果进行自动化暴力破解,且是go平台首款开源的RDP暴力破解工具。
Java安全相关的漏洞和技术demo,原生Java、Fastjson、Jackson、Hessian2、XML反序列化漏洞利用和Spring、Dubbo、Shiro、CAS、Tomcat、RMI、Nexus等框架\中间件\功能的exploits以及Java Security Manager绕过、Dubbo-Hessian2安全加固等等实践代码。
Linux技术栈
Log4j2 RCE Passive Scanner plugin for BurpSuite
LSTAR - CobaltStrike 综合后渗透插件
netspy是一款快速探测内网可达网段工具(深信服深蓝实验室天威战队强力驱动)
A declarative, efficient, and flexible JavaScript library for building user interfaces.
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
An Open Source Machine Learning Framework for Everyone
The Web framework for perfectionists with deadlines.
A PHP framework for web artisans
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
Some thing interesting about web. New door for the world.
A server is a program made to process requests and deliver data to clients.
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
Some thing interesting about visualization, use data art
Some thing interesting about game, make everyone happy.
We are working to build community through open source technology. NB: members must have two-factor auth.
Open source projects and samples from Microsoft.
Google ❤️ Open Source for everyone.
Alibaba Open Source for everyone
Data-Driven Documents codes.
China tencent open source team.