Skip to content
View OFalwl's full-sized avatar

Block or report OFalwl

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

一个攻防知识库。A knowledge base for red teaming and offensive security.

Python 4,293 744 Updated Jun 23, 2026

一个漏洞 PoC 知识库。A knowledge base for vulnerability PoCs(Proof of Concept), with 1k+ vulnerabilities.

Java 5,129 1,044 Updated May 11, 2026

一个基于 docsify 快速部署 Awesome-POC 漏洞文档的项目。Deploying the Awesome-POC repository via docsify.

HTML 2,160 423 Updated May 11, 2026

ARL官方仓库备份项目:ARL(Asset Reconnaissance Lighthouse)资产侦察灯塔系统旨在快速侦察与目标关联的互联网资产,构建基础资产信息库。 协助甲方安全团队或者渗透测试人员有效侦察和检索资产,发现存在的薄弱点和攻击面。

Python 2,039 739 Updated Jul 16, 2025

HackBrowserData的反射模块

Go 180 27 Updated Mar 13, 2021

FastJson全版本Docker漏洞环境(涵盖1.2.47/1.2.68/1.2.80等版本),主要包括JNDI注入及高版本绕过、waf绕过、文件读写、原生反序列化、利用链探测绕过、不出网利用等。从黑盒的角度覆盖FastJson深入利用

Python 1,244 159 Updated Jul 12, 2024

《Linux提权方法论》

808 111 Updated Feb 22, 2023

实时监控网页变化,并发送通知(Monitor web page changes in real time and send notifications)

Python 914 212 Updated Jun 20, 2025

Linux Kernel Hacking

C 768 137 Updated Apr 10, 2024

A curated list of GPT agents for cybersecurity

6,576 738 Updated Jul 21, 2024

云安全利用工具-云平台AK/SK-WEB利用工具,添加AK/SK自动检测资源,无需手动执行,支持云服务器、存储桶、数据库操作

Java 600 65 Updated Dec 19, 2024

Automatically parse Malleable C2 profiled into CrossC2 rebinding library source code

Go 19 2 Updated Feb 13, 2023

CrossC2通信协议API实现

C 84 10 Updated Jul 26, 2021

Cobalt Strike random C2 Profile 修改版(适配腾讯云函数,亚马逊云函数和CrossC2自定义protocol)

Jinja 89 8 Updated Apr 10, 2023

RedGuard is a C2 front flow control tool,Can avoid Blue Teams,AVs,EDRs check.

Go 1,565 212 Updated Aug 20, 2024

nginx WebShell/内存马,更优雅的nignx backdoor

C 323 42 Updated Jan 4, 2024

A list of python tools to help create an OPSEC-safe Cobalt Strike profile.

C++ 537 60 Updated Jun 12, 2026

Metadata hash incorporating the Rich Header for robustness against packing and other malware tricks

Python 73 6 Updated Aug 14, 2021

SourcePoint is a C2 profile generator for Cobalt Strike command and control servers designed to ensure evasion.

Go 1,220 170 Updated Apr 16, 2025

AutoGeaconC2: 一键读取Profile自动化生成geacon实现跨平台上线CobaltStrike

Go 142 7 Updated Apr 7, 2024

MobaXterm Pro Key Generator, support the old/latest/future versions.

Python 2 Updated Mar 10, 2024

MobaXterm注册机

Python 17 7 Updated Jan 3, 2024

Universal local privilege escalation Proof-of-Concept exploit for CVE-2024-1086, working on most Linux kernels between v5.14 and v6.6, including Debian, Ubuntu, and KernelCTF. The success rate is 9…

C 2,454 330 Updated Apr 17, 2024
Go 2 1 Updated Nov 10, 2024

PoC and Detection for CVE-2024-21626

77 12 Updated Feb 6, 2024

渗透测试C2、支持Lua插件扩展、域前置/CDN上线、自定义profile、前置sRDI、文件管理、进程管理、内存加载、截图、反向代理、分组管理

Go 1,392 208 Updated Feb 28, 2025

A powerful JNDI injection exploitation framework that supports RMI, LDAP and LDAPS protocols, including various bypass methods for high-version JDK restrictions

Java 599 37 Updated May 4, 2026

An aggressor script that can help automate payload building in Cobalt Strike

C# 119 18 Updated Jan 22, 2024

fireELF - Fileless Linux Malware Framework

Python 683 115 Updated Apr 17, 2019

Cobalt Strike插件

94 12 Updated Jan 13, 2024
Next