Skip to content
View zhzyker's full-sized avatar
🔥
make bug
🔥
make bug

Organizations

@YanYun-Lab @0-sec @xiecat @pwnwiki-project @cisp-pte @Sec-Fork

Block or report zhzyker

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Starred repositories

Showing results

Async BOF implementation of 'Rubeus monitor' to detect and automatically extract Kerberos TGTs as they appear on a target system.

C 113 7 Updated Apr 22, 2026

Command-line tool and library for Windows remote command execution in Go

Go 469 140 Updated Apr 7, 2026

AI 自动化通用问题解决 / AI 自动化渗透测试系统

499 23 Updated Apr 22, 2026

LeakDetector 是一款专为红队渗透测试人员和安全研究员设计的自动化信息泄露侦察工具。

57 2 Updated Apr 21, 2026

全能协议分析工具:浏览器抓包 + MITM 代理 + 指纹伪装 + AI 分析 + MCP Server 无缝对接 AI Agent/IDE | All-in-one protocol analysis toolkit — built-in browser capture, MITM proxy, JS hooks, fingerprint spoofing, AI analysis & M…

TypeScript 1,952 419 Updated Apr 22, 2026

Cobalt Strike BOF used to perform privilege escalation by exploiting the SeImpersonate privilege. Based on the original GodPotato PoC by BeichenDream.

C 215 29 Updated Apr 16, 2026

Two WinForms GUI tools for enumerating, searching, and exfiltrating data from M365 environments using application-level OAuth tokens

PowerShell 207 25 Updated Mar 4, 2026

The Red Sun vulnerability repository

C++ 1,796 395 Updated Apr 15, 2026

Injecting code by recompiling shellcode into a ROP chain.

C++ 123 11 Updated Apr 21, 2026

Modify machine code in binaries with alternative x64 assembly opcodes for AV evasion

Python 128 20 Updated Apr 26, 2026

DSCourier is a proof-of-concept that uses the WinGet Configuration COM API to apply DSC configurations through Microsoft-signed binaries.

PowerShell 175 20 Updated Apr 16, 2026

Tool designed to parse and analyze Microsoft Defender AV signature definition files

C# 12 2 Updated Apr 12, 2026

ExchangeHound is a defensive BloodHound OpenGraph collector for on-prem Microsoft Exchange that maps mailbox delegation and Exchange privilege relationships to help blue teams find abuse paths and …

PowerShell 65 9 Updated Apr 17, 2026

对IP检测是否cve漏洞,是否为蜜罐

Python 32 2 Updated Oct 27, 2024

A Rust template for writing Beacon Object Files (BOFs)

Rust 126 12 Updated Feb 11, 2026

A Cobalt Strike BOF implementation of the SilentHarvest registry dumping technique

C 168 12 Updated Apr 14, 2026

A Cobalt Strike Beacon Object File that exploits the BlueHammer vulnerability that to obtain a copy of the SAM database.

C 146 20 Updated Apr 15, 2026

Security testing toolkit for Claude Code: curated SecLists wordlists, injection payloads, and expert agents for authorized pentesting, CTFs, and bug bounties

PHP 194 32 Updated Mar 21, 2026

Modular User-Defined Reflective Loader (UDRL) built on Crystal Palace for controlled DLL execution and evasion research.

C 12 1 Updated Apr 14, 2026

Android APK security analysis tool. Decompiles DEX, scans for vulns, parses manifests and certs. Runs in your browser.

JavaScript 52 11 Updated Apr 4, 2026

BOF for Havoc that copies locked Windows files (SAM, SYSTEM, NTDS.dit) via raw MFT parsing — no VSS, no Registry APIs, no PowerShell

C 123 7 Updated Apr 6, 2026

Nim implementation for sud0Ru's Credential Dumping from SAM/SECURITY Hives Method (a.k.a. SilentHarvest)

Nim 104 12 Updated Apr 4, 2026

retrieve information via O365 and AzureAD with a valid cred

PowerShell 740 107 Updated Aug 14, 2022

An example UDC2 implementation for CrystalC2.

C 17 2 Updated Mar 23, 2026

适用于Node.js环境下的Suo5内存马.

JavaScript 48 6 Updated Mar 20, 2026

为 AI Agent 设计的 JS 逆向 MCP Server,内置反检测,基于 chrome-devtools-mcp 重构 | JS reverse engineering MCP server with agent-first tool design and built-in anti-detection. Rebuilt from chrome-devtools-mcp.

TypeScript 899 163 Updated Apr 24, 2026

SSRF plugin for burp Automates SSRF Detection in all of the Request

Java 621 59 Updated Jan 20, 2021

PHP-Code-Audit-Skill是一个专注于PHP代码审计的Skill

287 32 Updated Mar 25, 2026

Ryūjin Protector - Is a Intel Arch - BIN2BIN - PE Obfuscation/Protection/DRM tool

C++ 329 47 Updated Nov 20, 2025

x64DbgMCPServer made from c# with Claude, Windsurf and Cursor support

C# 463 78 Updated Apr 2, 2026
Next