Kai5174's Stars
lxgw/LxgwWenKai
An open-source Chinese font derived from Fontworks' Klee One. 一款开源中文字体,基于 FONTWORKS 出品字体 Klee One 衍生。
tidwall/gjson
Get JSON values quickly - JSON parser for Go
streaak/keyhacks
Keyhacks is a repository which shows quick ways in which API keys leaked by a bug bounty program can be checked to see if they're valid.
JoyChou93/java-sec-code
Java web common vulnerabilities and security code which is base on springboot and spring security
find-sec-bugs/find-sec-bugs
The SpotBugs plugin for security audits of Java web applications and Android applications. (Also work with Kotlin, Groovy and Scala projects)
zema1/suo5
一款高性能 HTTP 代理隧道工具 | A high-performance http proxy tunneling tool
Y4tacker/JavaSec
a rep for documenting my study, may be from 0 to 0.1
kangjianwei/LearningJDK
JDK源码阅读笔记
pascal-lab/Tai-e
An easy-to-learn/use static analysis framework for Java
JetBrains/intellij-sdk-code-samples
Mirror of the IntelliJ SDK Docs Code Samples
a1phaboy/FastjsonScan
Fastjson扫描器,可识别版本、依赖库、autoType状态等。A tool to distinguish fastjson ,version and dependency
n0fate/chainbreaker
Mac OS X Keychain Forensic Tool
QAX-A-Team/WeblogicEnvironment
Weblogic环境搭建工具
cckuailong/JNDI-Injection-Exploit-Plus
80+ Gadgets(30 More than ysoserial). JNDI-Injection-Exploit-Plus is a tool for generating workable JNDI links and provide background services by starting RMI server,LDAP server and HTTP server.
shmilylty/SharpHostInfo
SharpHostInfo是一款快速探测内网主机信息工具(深信服深蓝实验室天威战队强力驱动)
4ra1n/shell-analyzer
通过 JAVA AGENT 查杀内存马,提供简易方便的 GUI 界面,一键反编译目标环境内存马进行分析,支持远程查杀和本地查杀(注意:仅供本地复现分析学习,请勿用于正式和生产环境)
lutzenfried/Methodology
gradejs/gradejs
GradeJS analyzes production Webpack bundles without having access to the source code of a website. Instantly see vulnerabilities, outdated packages, and more just by entering a web application URL.
Imanfeng/Apache-Solr-RCE
Apache Solr Exploits 🌟
BytecodeDL/ByteCodeDL
A declarative static analysis tool for jvm bytecode based Datalog like CodeQL
ChristianChiarulli/lvim
My config for LunarVim
hegusung/WebHashcat
Hashcat web interface
g0ldencybersec/EasyEASM
Zero-dollar attack surface management tool
Pear1y/CVE-2022-26133
Atlassian Bitbucket Data Center RCE(CVE-2022-26133) verification.
Occamsec/CVE-2023-2825
GitLab CVE-2023-2825 PoC. This PoC leverages a path traversal vulnerability to retrieve the /etc/passwd file from a system running GitLab 16.0.0.
SleepTheGod/SSH-Remote-Code-Execution
SSH Zero-Day Made By ClumsyLulz
Y4tacker/HackingFernFlower
2023白帽补天大会部分代码
luelueking/kkFileView-v4.3.0-RCE-POC
zema1/rawhttp
A mininal go http client for security testing
ODDFuzz/ODDFuzz
S&P2023 Paper