Skip to content
View rabbitsafe's full-sized avatar

Block or report rabbitsafe

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
86 stars written in Python
Clear filter

Web path scanner

Python 13,605 2,403 Updated Oct 20, 2025

OneForAll是一款功能强大的子域收集工具

Python 9,378 1,406 Updated Sep 12, 2025

You Know, For WEB Fuzzing ! 日站用的字典。

Python 8,137 2,480 Updated Nov 13, 2023

Study Notes For Web Hacking / Web安全学习笔记

Python 5,098 917 Updated Feb 11, 2025

Exphub[漏洞利用脚本库] 包括Webloigc、Struts2、Tomcat、Nexus、Solr、Jboss、Drupal的漏洞利用脚本,最新添加CVE-2020-14882、CVE-2020-11444、CVE-2020-10204、CVE-2020-10199、CVE-2020-1938、CVE-2020-2551、CVE-2020-2555、CVE-2020-2883、CVE-…

Python 4,257 1,100 Updated Apr 4, 2021

信息收集自动化工具

Python 3,973 593 Updated Jun 13, 2024

pocsuite3 is an open-sourced remote vulnerability testing framework developed by the Knownsec 404 Team.

Python 3,789 783 Updated Feb 28, 2025

Vulmap 是一款 web 漏洞扫描和验证工具, 可对 webapps 进行漏洞扫描, 并且具备漏洞验证功能

Python 3,502 570 Updated Apr 26, 2023

一款适用于以HW行动/红队/渗透测试团队为场景的移动端(Android、iOS、WEB、H5、静态网站)信息收集扫描工具,可以帮助渗透测试工程师、攻击队成员、红队成员快速收集到移动端或者静态WEB站点中关键的资产信息并提供基本的信息输出,如:Title、Domain、CDN、指纹信息、状态信息等。

Python 3,461 407 Updated Dec 18, 2022

A fully automated, accurate, and extensive scanner for finding log4j RCE CVE-2021-44228

Python 3,434 740 Updated Nov 23, 2022

An advanced web directory & file scanning tool that will be more powerful than DirBuster, Dirsearch, cansina, and Yu Jian.一个高级web目录、文件扫描工具,功能将会强于DirBuster、Dirsearch、cansina、御剑。

Python 3,336 559 Updated Oct 21, 2025

Neo-reGeorg is a project that seeks to aggressively refactor reGeorg

Python 3,241 471 Updated Aug 20, 2025

JSFinder is a tool for quickly extracting URLs and subdomains from JS files on a website.

Python 2,871 424 Updated Nov 24, 2021

利用大量高威胁poc/exp快速获取目标权限,用于渗透和红队快速打点

Python 2,347 385 Updated Jun 9, 2023

针对SpringBoot的开源渗透框架,以及Spring相关高危漏洞利用工具

Python 2,124 171 Updated Oct 24, 2025

渗透测试插件化并发框架 / Open-sourced remote vulnerability PoC/EXP framework

Python 1,954 744 Updated Mar 28, 2022

frida工具的缝合怪

Python 1,867 418 Updated Mar 20, 2024

Fake Protocol Server

Python 1,605 184 Updated Jan 2, 2025

bayonet是一款src资产管理系统,从子域名、端口服务、漏洞、爬虫等一体化的资产管理系统

Python 1,506 318 Updated Nov 22, 2022

Python3编写的CMS漏洞检测框架

Python 1,458 514 Updated May 22, 2023

Bypass firewall for traffic forwarding using webshell

Python 1,425 206 Updated Sep 29, 2021

Penetration Testing Platform

Python 1,350 373 Updated Jul 6, 2022

口令爆破字典,有键盘组合字典、拼音字典、字母与数字混合这三种类型

Python 1,284 330 Updated Oct 8, 2021

阿里云accesskey利用工具

Python 1,216 179 Updated Apr 8, 2022

红队综合渗透框架

Python 1,180 207 Updated May 11, 2023

自动化爬取并自动测试所有swagger接口

Python 1,142 116 Updated Jun 9, 2025

此项目用来提取收集以往泄露的密码中符合条件的强弱密码

Python 1,124 314 Updated Apr 1, 2019

POC&EXP仓库、hvv弹药库、Nday、1day

Python 1,082 274 Updated Nov 11, 2022

Kunyu, more efficient corporate asset collection

Python 1,053 145 Updated Feb 6, 2025

基于各大API的一款企业信息查询工具,为了更快速的获取企业的信息,省去收集的麻烦过程,web端于plat平台上线

Python 967 132 Updated Apr 13, 2023
Next