CHunTaoTao's Stars
KathanP19/HowToHunt
Collection of methodology and test case for various web vulnerabilities.
projectdiscovery/notify
Notify is a Go-based assistance package that enables you to stream the output of several tools (or read from a file) and publish it to a variety of supported platforms.
plackyhacker/Shellcode-Injection-Techniques
A collection of C# shellcode injection techniques. All techniques use an AES encrypted meterpreter payload. I will be building this project up as I learn, discover or develop more techniques. Some techniques are better than others at bypassing AV.
0x727/BugRepoter_0x727
BugRepoter_0x727(自动化编写报告平台)根据安全团队定制化协同管理项目安全,可快速查找历史漏洞,批量导出报告。
Ramos-dev/OSSTunnel
基于亚马逊S3\阿里云OSS\腾讯COS通信隧道的远程管理工具
SkewwG/BurpExtender
Burp suite 的插件集合
SkewwG/domainTools
内网域渗透小工具
githubmaidou/tools
Python渗透漏洞工具
Lucifer1993/cmsprint
CMS和中间件指纹库
Lucifer1993/PoCHub
PoC,attack,scan,redteam,vulnerable-manage
Lucifer1993/SatanSword
红队综合渗透框架
pikpikcu/Pentest-Tools-Framework
Pentest Tools Framework is a database of exploits, Scanners and tools for penetration testing. Pentest is a powerful framework includes a lot of tools for beginners. You can explore kernel vulnerabilities, network vulnerabilities
sbilly/awesome-security
A collection of awesome software, libraries, documents, books, resources and cools stuffs about security.
ADOOO/Sec-Box
information security Tools Box (信息安全工具以及资源集合)
ADOOO/DnslogSqlinj
vulhub/vulhub
Pre-Built Vulnerable Environments Based on Docker-Compose
pmiaowu/BurpFastJsonScan
一款基于BurpSuite的被动式FastJson检测插件
pmiaowu/BurpHttpForwardRequests
burp-http请求转发至其他模块的插件
pmiaowu/BurpReflectiveXssMiao
一款基于burp的反射xss检测插件
pmiaowu/HostCollision
用于host碰撞而生的小工具,专门检测渗透中需要绑定hosts才能访问的主机或内部系统
wgpsec/DBJ
大宝剑-边界资产梳理工具(红队、蓝队、企业组织架构、子域名、Web资产梳理、Web指纹识别、ICON_Hash资产匹配)
Goqi/Banli
Banli-高危资产识别和高危漏洞扫描
bit4woo/knife
A burp extension that add some useful function to Context Menu 添加一些右键菜单让burp用起来更顺畅
bit4woo/python_sec
python安全和代码审计相关资料收集 resource collection of python security and code review
phith0n/Mind-Map
各种安全相关思维导图整理收集
d3vilbug/HackBar
HackBar plugin for Burpsuite
SecWiki/sec-chart
安全思维导图集合
mstxq17/MoreCode
一个常用编码加解密的懒人工具,自动识别,尝试转换所有类型,包括html实体化,base64,base32,32位md5,16位md5,hash,\x,0x等十六进制格式,url编码...
lintstar/About-Attack
一个旨在通过应用场景 / 标签对 Github 红队向工具 / 资源进行分类收集,降低红队技术门槛的手册【持续更新】
safe6Sec/PentestNote
一些渗透姿势记录