Stars
A ShadowsocksR client for Android
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
一款针对Shiro550漏洞进行快速漏洞利用工具。 对 @SummerSec 大佬的项目https://github.com/SummerSec/ShiroAttack2 进行了一些改进。
Quickly Extracts IP's, Email Addresses, Hashes, Files, Credit Cards, Social Security Numbers and a lot More From Text
A Burp Suite extension for identifying injection flaws (LFI, RCE, SQLi), authentication/authorization issues, and HTTP 403 access violations. It supports dynamic payload generation, including BChec…
高性能 HTTP 正向代理工具 | A high-performance http tunneling tool
Docker Enumeration, Escalation of Privileges and Container Escapes (DEEPCE)
Robber is open source tool for finding executables prone to DLL hijacking
📱 objection - runtime mobile exploration
A tool to test security of json web token
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the …
Patator is a multi-purpose brute-forcer, with a modular design and a flexible usage.
Collection of CTF Web challenges I made
Deserialization payload generator for a variety of .NET formatters
jerry1995 / patator
Forked from lanjelot/patatorPatator is a multi-purpose brute-forcer, with a modular design and a flexible usage.
Weblogic漏洞利用图形化工具 支持注入内存马、一键上传webshell、命令执行
Community curated list of templates for the nuclei engine to find security vulnerabilities.
An open-source remote desktop application designed for self-hosting, as an alternative to TeamViewer.
Automatic SQL injection and database takeover tool
红/蓝队环境自动化部署工具 | Red/Blue team environment automation deployment tool
A little tool to play with Windows security
Packer Fuzzer is a fast and efficient scanner for security detection of websites constructed by javascript module bundler such as Webpack.