Skip to content
View r35tart's full-sized avatar
🌴
On vacation
🌴
On vacation

Block or report r35tart

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

A list of useful payloads and bypass for Web Application Security and Pentest/CTF

Python 71,433 16,182 Updated Nov 2, 2025

SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, se…

PHP 66,730 24,750 Updated Nov 5, 2025

Metasploit Framework

Ruby 36,838 14,604 Updated Nov 5, 2025

一款轻量级、高性能、功能强大的内网穿透代理服务器。支持tcp、udp、socks5、http等几乎所有流量转发,可用来访问内网网站、本地支付接口调试、ssh访问、远程桌面,内网dns解析、内网socks5代理等等……,并带有功能强大的web管理端。a lightweight, high-performance, powerful intranet penetration proxy serv…

Go 33,596 6,019 Updated May 30, 2024

A plugin for Mac WeChat

Objective-C 22,667 3,600 Updated Feb 13, 2025

Redis is an in-memory database that persists on disk. The data model is key-value, but many different kind of values are supported: Strings, Lists, Sets, Sorted Sets, Hashes

C 21,051 5,355 Updated Jul 18, 2019

A little tool to play with Windows security

C 20,956 3,987 Updated May 11, 2025

Pre-Built Vulnerable Environments Based on Docker-Compose

Dockerfile 19,742 4,714 Updated Sep 19, 2025

PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)

C# 18,663 3,306 Updated Nov 4, 2025

Gitbook

18,109 6,730 Updated Apr 10, 2021

GO Simple Tunnel - a simple tunnel written in golang

Go 17,241 2,620 Updated Dec 31, 2024

🔥 Proxy is a high performance HTTP(S) proxies, SOCKS5 proxies,WEBSOCKET, TCP, UDP proxy server implemented by golang. Now, it supports chain-style proxies,nat forwarding in different lan,TCP/UDP po…

Go 16,724 3,093 Updated Sep 2, 2025

Impacket is a collection of Python classes for working with network protocols.

Python 15,063 3,814 Updated Oct 22, 2025

Web path scanner

Python 13,603 2,403 Updated Oct 20, 2025

一款内网综合扫描工具,方便一键自动化、全方位漏扫扫描。

Go 12,907 1,810 Updated Oct 3, 2025

PowerSploit - A PowerShell Post-Exploitation Framework

PowerShell 12,688 4,712 Updated Aug 17, 2020

一款长亭自研的完善的安全评估工具,支持常见 web 安全问题扫描和自定义 poc | 使用之前务必先阅读文档

Vue 11,286 1,873 Updated Oct 29, 2024

Fast subdomains enumeration tool for penetration testers

Python 10,675 2,194 Updated Aug 2, 2024

This is a webshell open source project

PHP 10,583 5,609 Updated Dec 24, 2024

Credentials recovery project

Python 10,459 2,105 Updated Sep 18, 2025

Nishang - Offensive PowerShell for red team, penetration testing and offensive security.

PowerShell 9,566 2,537 Updated Apr 25, 2024

OneForAll是一款功能强大的子域收集工具

Python 9,378 1,405 Updated Sep 12, 2025

httpx is a fast and multi-purpose HTTP toolkit that allows running multiple probes using the retryablehttp library.

Go 9,143 981 Updated Nov 3, 2025

Pupy is an opensource, cross-platform (Windows, Linux, OSX, Android) C2 and post-exploitation framework written in python and C

Python 8,859 1,845 Updated Mar 22, 2024

Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.

PHP 8,721 2,118 Updated Nov 10, 2023

A powerful and open-source toolkit for hackers and security automation - 安全行业从业者自研开源扫描器合辑

8,678 2,413 Updated Oct 9, 2025

windows-kernel-exploits Windows平台提权漏洞集合

C 8,492 2,857 Updated Jun 11, 2021

You Know, For WEB Fuzzing ! 日站用的字典。

Python 8,135 2,480 Updated Nov 13, 2023

渗透测试有关的POC、EXP、脚本、提权、小工具等---About penetration-testing python-script poc getshell csrf xss cms php-getshell domainmod-xss csrf-webshell cobub-razor cve rce sql sql-poc poc-exp bypass oa-getshell cve…

HTML 7,111 2,023 Updated Sep 4, 2025
Next