Pinned Repositories
AD-Attack-Defense
Attack and defend active directory using modern post exploitation adversary tradecraft activity
Advanced-SQL-Injection-Cheatsheet
A cheat sheet that contains advanced queries for SQL Injection of all types.
APTnotes
Various public documents, whitepapers and articles about APT campaigns
AttackWebFrameworkTools
本软件首先集成危害性较大前台rce(无需登录,或者登录绕过执行rce)。反序列化(利用链简单)。上传getshell。sql注入等高危漏洞直接就可以拿权限出数据。其次对一些构造复杂exp漏洞进行检测。傻瓜式导入url即可实现批量测试,能一键getshell检测绝不sql注入或者不是只检测。其中thinkphp 集成所有rce Exp Struts2漏洞集成了shack2 和k8 漏洞利用工具所有Exp并对他们的exp进行优化和修复此工具的所集成漏洞全部是基于平时实战中所得到的经验从而写入到工具里。例如:通达oA一键getshell实战测试 struts2一键getshell 等等
Awesome-CobaltStrike
cobaltstrike的相关资源汇总 / List of Awesome CobaltStrike Resources
deepin-wine
【deepin源移植】Debian/Ubuntu上最快的QQ/微信安装方式
dismap
Asset discovery and identification tools 快速识别 Web 指纹信息,定位资产类型。辅助红队快速定位目标资产信息,辅助蓝队发现疑似脆弱点
Doraemon
渗透辅助 BurpSuite 小插件
evil-winrm
The ultimate WinRM shell for hacking/pentesting
Hikvision_Fastjson_Poc
0x95cn's Repositories
0x95cn/Hikvision_Fastjson_Poc
0x95cn/AD-Attack-Defense
Attack and defend active directory using modern post exploitation adversary tradecraft activity
0x95cn/Advanced-SQL-Injection-Cheatsheet
A cheat sheet that contains advanced queries for SQL Injection of all types.
0x95cn/Awesome-CobaltStrike
cobaltstrike的相关资源汇总 / List of Awesome CobaltStrike Resources
0x95cn/deepin-wine
【deepin源移植】Debian/Ubuntu上最快的QQ/微信安装方式
0x95cn/dismap
Asset discovery and identification tools 快速识别 Web 指纹信息,定位资产类型。辅助红队快速定位目标资产信息,辅助蓝队发现疑似脆弱点
0x95cn/Doraemon
渗透辅助 BurpSuite 小插件
0x95cn/evil-winrm
The ultimate WinRM shell for hacking/pentesting
0x95cn/ExploitDepository
一个花里胡哨的Exploit运行框架
0x95cn/CSAgent
CobaltStrike 4.x通用白嫖及汉化加载器
0x95cn/HackerPermKeeper
权限维持
0x95cn/InScan
边界打点后的自动化渗透工具
0x95cn/JNDI-Injection-Exploit
JNDI注入测试工具(A tool which generates JNDI links can start several servers to exploit JNDI Injection vulnerability,like Jackson,Fastjson,etc)
0x95cn/KCon
KCon is a famous Hacker Con powered by Knownsec Team.
0x95cn/KnowledgeSharing
0x95cn/NEW_xp_CAPTCHA
xp_CAPTCHA(瞎跑 白嫖版) burp 验证码 识别 burp插件
0x95cn/nuclei
Fast and customizable vulnerability scanner based on simple YAML based DSL.
0x95cn/Nuitka
Nuitka is a Python compiler written in Python. It's fully compatible with Python 2.6, 2.7, 3.3, 3.4, 3.5, 3.6, 3.7, 3.8, 3.9, and 3.10. You feed it your Python app, it does a lot of clever things, and spits out an executable or extension module.
0x95cn/passive-scan-client
Burp被动扫描流量转发插件
0x95cn/PeiQi-WIKI-Book
面向网络安全从业者的知识文库🍃
0x95cn/php-reverse-shell
0x95cn/RedTeam_BlueTeam_HW
红蓝对抗以及护网相关工具和资料,内存shellcode(cs+msf)和内存马查杀工具
0x95cn/TOTOlink-A700RU
0x95cn/vulhub
Pre-Built Vulnerable Environments Based on Docker-Compose
0x95cn/VULOnceMore
记录个人的漏洞复现过程
0x95cn/WebGoat
WebGoat is a deliberately insecure application
0x95cn/webshell
This is a webshell open source project
0x95cn/WhoisZkuan.github.io.bak
My Hexo Blog
0x95cn/yakit
Cyber Security ALL-IN-ONE Platform
0x95cn/YesPlayMusic
高颜值的第三方网易云播放器,支持 Windows / macOS / Linux :electron: