- All languages
- ASP
- ActionScript
- Arduino
- Assembly
- AutoIt
- Batchfile
- BlitzBasic
- Boo
- C
- C#
- C++
- CSS
- CodeQL
- Dart
- Dockerfile
- Go
- HCL
- HTML
- Haskell
- Java
- JavaScript
- Jupyter Notebook
- Kotlin
- Less
- Lua
- Makefile
- Mask
- Objective-C
- PHP
- Pascal
- Perl
- PowerShell
- Python
- Rich Text Format
- Ruby
- Rust
- Scala
- Shell
- Smali
- Smarty
- Standard ML
- Swift
- TeX
- TypeScript
- VBA
- VBScript
- Vim Script
- Visual Basic
- Vue
- XSLT
- YARA
- Zeek
Starred repositories
A list of public penetration test reports published by several consulting firms and academic security groups.
Sanitize untrusted HTML (to prevent XSS) with a configuration specified by a Whitelist
Automate the creation of a lab environment complete with security tooling and logging best practices
HTTPLeaks - All possible ways, a website can leak HTTP requests
ADRecon is a tool which gathers information about the Active Directory and generates a report which can provide a holistic picture of the current state of the target AD environment.
A curated list of useful resources that cover Offensive AI.
*DEPRECATED* mana toolkit for wifi rogue AP attacks and MitM
A Nmap XSL implementation with Bootstrap.
PatrOwl - Open Source, Smart and Scalable Security Operations Orchestration Platform
A fully functional DanderSpritz lab in 2 commands
Drltrace is a library calls tracer for Windows and Linux applications.
Easy-to-use live forensics toolbox for Linux endpoints
Content hijacking proof-of-concept using Flash, PDF and Silverlight
dynamic crawler for web vulnerability scanner
LinuxTOY / linuxtoy.org
Forked from xuxiaodong/linuxtoy.orgSite source for linuxtoy.org.
DOMXSS Scanner is an online tool to scan source code for DOM based XSS vulnerabilities
Phishing Simulation mainly aims to increase phishing awareness by providing an intuitive tutorial and customized assessment
通过获取到的webshell流量、url、key来还原攻击者使用webshell所做的操作。