Your7Maxx's Stars
swisskyrepo/PayloadsAllTheThings
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
zylon-ai/private-gpt
Interact with your documents using the power of GPT, 100% privately, no data leaks
dibingfa/flash-linux0.11-talk
你管这破玩意叫操作系统源码 — 像小说一样品读 Linux 0.11 核心代码
frohoff/ysoserial
A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.
Mr-xn/Penetration_Testing_POC
渗透测试有关的POC、EXP、脚本、提权、小工具等---About penetration-testing python-script poc getshell csrf xss cms php-getshell domainmod-xss csrf-webshell cobub-razor cve rce sql sql-poc poc-exp bypass oa-getshell cve-cms
0voice/linux_kernel_wiki
linux内核学习资料:200+经典内核文章,100+内核论文,50+内核项目,500+内核面试题,80+内核视频
swisskyrepo/SSRFmap
Automatic SSRF fuzzer and exploitation tool
eunomia-bpf/bpf-developer-tutorial
eBPF Developer Tutorial: Learning eBPF Step by Step with Examples
xdp-project/xdp-tutorial
XDP tutorial
Leezj9671/Pentest_Interview
个人准备渗透测试和安全面试的经验之谈,和去部分厂商的面试题,干货真的满满~
al0ne/LinuxCheck
Linux应急处置/信息搜集/漏洞检测工具,支持基础配置/网络流量/任务计划/环境变量/用户信息/Services/bash/恶意文件/内核Rootkit/SSH/Webshell/挖矿文件/挖矿进程/供应链/服务器风险等13类70+项检查
Naetw/CTF-pwn-tips
Here record some tips about pwn. Something is obsoleted and won't be updated. Sorry about that.
ReAbout/web-sec
WEB安全手册(红队安全技能栈),漏洞理解,漏洞利用,代码审计和渗透测试总结。【持续更新】
krisnova/boopkit
Linux eBPF backdoor over TCP. Spawn reverse shells, RCE, on prior privileged access. Less Honkin, More Tonkin.
txthinking/zoro
zoro can help you expose local server to external network. Support both TCP/UDP, of course support HTTP. Zero-Configuration.
threedr3am/JSP-WebShells
Collect JSP webshell of various implementation methods. 收集JSP Webshell的各种姿势
tide-emergency/yingji
应急相关内容积累
MY0723/goby-poc
451个goby poc,是否后门及重复自行判断,来源于网络收集的Goby&POC,不定时更新。
bpftools/linux-observability-with-bpf
Code snippets from the O'Reilly book
g0dA/linuxStack
Linux技术栈
c0ny1/xxe-lab
一个包含php,java,python,C#等各种语言版本的XXE漏洞Demo
l3m0n/pentest_tools
收集一些小型实用的工具
Mr-xn/BLACKHAT_Asia2023
Black Hat Asia 2023 PDF Public
cyubuchen/Free_Proxy_Website
获取免费socks/https/http代理的网站集合
s0md3v/SubGPT
Find subdomains with GPT, for free
MayankPandey01/Jira-Lens
Fast and customizable vulnerability scanner For JIRA written in Python
jvm-rasp/jrasp-agent
专注于JVM的运行时防御系统RASP
yuyan-sec/druid_sessions
获取 alibaba druid 一些 sessions , sql , urls
k8gege/k8badusb
BadUSB Teensy downexec exploit support Windows & Linux / Windows Cmd & PowerShell addUser exploit
wilsonwr/bcc-lsm-scripts
Working examples of KRSI (via BCC scripts).