0x95cn Goto Github PK
Type: User
Type: User
Attack and defend active directory using modern post exploitation adversary tradecraft activity
A cheat sheet that contains advanced queries for SQL Injection of all types.
Various public documents, whitepapers and articles about APT campaigns
本软件首先集成危害性较大前台rce(无需登录,或者登录绕过执行rce)。反序列化(利用链简单)。上传getshell。sql注入等高危漏洞直接就可以拿权限出数据。其次对一些构造复杂exp漏洞进行检测。傻瓜式导入url即可实现批量测试,能一键getshell检测绝不sql注入或者不是只检测。其中thinkphp 集成所有rce Exp Struts2漏洞集成了shack2 和k8 漏洞利用工具所有Exp并对他们的exp进行优化和修复此工具的所集成漏洞全部是基于平时实战中所得到的经验从而写入到工具里。例如:通达oA一键getshell实战测试 struts2一键getshell 等等
cobaltstrike的相关资源汇总 / List of Awesome CobaltStrike Resources
CobaltStrike 4.x通用白嫖及汉化加载器
【deepin源移植】Debian/Ubuntu上最快的QQ/微信安装方式
Asset discovery and identification tools 快速识别 Web 指纹信息,定位资产类型。辅助红队快速定位目标资产信息,辅助蓝队发现疑似脆弱点
渗透辅助 BurpSuite 小插件
The ultimate WinRM shell for hacking/pentesting
一个花里胡哨的Exploit运行框架
A `.git` folder disclosure exploit
权限维持
边界打点后的自动化渗透工具
JNDI注入测试工具(A tool which generates JNDI links can start several servers to exploit JNDI Injection vulnerability,like Jackson,Fastjson,etc)
KCon is a famous Hacker Con powered by Knownsec Team.
xp_CAPTCHA(瞎跑 白嫖版) burp 验证码 识别 burp插件
Fast and customizable vulnerability scanner based on simple YAML based DSL.
Nuitka is a Python compiler written in Python. It's fully compatible with Python 2.6, 2.7, 3.3, 3.4, 3.5, 3.6, 3.7, 3.8, 3.9, and 3.10. You feed it your Python app, it does a lot of clever things, and spits out an executable or extension module.
Burp被动扫描流量转发插件
面向网络安全从业者的知识文库🍃
红蓝对抗以及护网相关工具和资料,内存shellcode(cs+msf)和内存马查杀工具
SpringBoot 相关漏洞学习资料,利用方法和技巧合集,黑盒安全评估 check list
thinkphp v5.x 远程代码执行漏洞-POC集合
Pre-Built Vulnerable Environments Based on Docker-Compose
此项目将不定期从棱角社区对外进行公布一些最新漏洞。
A declarative, efficient, and flexible JavaScript library for building user interfaces.
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
An Open Source Machine Learning Framework for Everyone
The Web framework for perfectionists with deadlines.
A PHP framework for web artisans
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
Some thing interesting about web. New door for the world.
A server is a program made to process requests and deliver data to clients.
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
Some thing interesting about visualization, use data art
Some thing interesting about game, make everyone happy.
We are working to build community through open source technology. NB: members must have two-factor auth.
Open source projects and samples from Microsoft.
Google ❤️ Open Source for everyone.
Alibaba Open Source for everyone
Data-Driven Documents codes.
China tencent open source team.