- All languages
- ASP
- ActionScript
- Arduino
- Assembly
- AutoIt
- Batchfile
- BlitzBasic
- Boo
- C
- C#
- C++
- CSS
- CodeQL
- Dart
- Dockerfile
- Go
- HCL
- HTML
- Haskell
- Java
- JavaScript
- Jupyter Notebook
- Kotlin
- Less
- Lua
- Makefile
- Mask
- Objective-C
- PHP
- Pascal
- Perl
- PowerShell
- Python
- Rich Text Format
- Ruby
- Rust
- Scala
- Shell
- Smali
- Smarty
- Standard ML
- Swift
- TeX
- TypeScript
- VBA
- VBScript
- Vim Script
- Visual Basic
- Vue
- XSLT
- YARA
- Zeek
Starred repositories
A list of public penetration test reports published by several consulting firms and academic security groups.
Sanitize untrusted HTML (to prevent XSS) with a configuration specified by a Whitelist
Automate the creation of a lab environment complete with security tooling and logging best practices
HTTPLeaks - All possible ways, a website can leak HTTP requests
ADRecon is a tool which gathers information about the Active Directory and generates a report which can provide a holistic picture of the current state of the target AD environment.
A curated list of useful resources that cover Offensive AI.
*DEPRECATED* mana toolkit for wifi rogue AP attacks and MitM
A Nmap XSL implementation with Bootstrap.
PatrOwl - Open Source, Smart and Scalable Security Operations Orchestration Platform
A fully functional DanderSpritz lab in 2 commands
Drltrace is a library calls tracer for Windows and Linux applications.
Content hijacking proof-of-concept using Flash, PDF and Silverlight
Phishing Simulation mainly aims to increase phishing awareness by providing an intuitive tutorial and customized assessment
通过获取到的webshell流量、url、key来还原攻击者使用webshell所做的操作。
A very simple bridge for performing Flash HTTP requests with JavaScript
Demo of CloudPets toy functionality using Web Bluetooth