chuangwen's Stars
chuangwen/godlp
sensitive information protection toolkit
bytedance/godlp
sensitive information protection toolkit
Ullaakut/Gorsair
Gorsair gives root access on remote docker containers that expose their APIs
dosec-cn/harbor-scanner
一个免费的镜像漏洞扫描工具, 可以扫描镜像中已安装软件包的漏洞,支持中文漏洞库,可与 Harbor 无缝集成。
dbsystel/trivy-vulnerability-explorer
Web application that allows to load a Trivy report in json format and displays the vulnerabilities of a single target in an interactive data table.
qax-os/goreporter
A Golang tool that does static analysis, unit testing, code review and generate code quality report.
zhengjim/camille
基于Frida的Android App隐私合规检测辅助工具
aquasecurity/fanal
Static Analysis Library for Containers
scumjr/dirtycow-vdso
PoC for Dirty COW (CVE-2016-5195)
krol3/devsecops-resources
A list of resources blogs talks material about DevSecOps
krol3/container-security-checklist
Checklist for container security - devsecops practices
krol3/kubernetes-security-checklist
Awesome resources about Security in Kubernetes
neex/http2smugl
arthepsy/CVE-2021-4034
PoC for PwnKit: Local Privilege Escalation Vulnerability in polkit’s pkexec (CVE-2021-4034)
berdav/CVE-2021-4034
CVE-2021-4034 1day
aquasecurity/trivy
Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more
IronCore864/k8s-security-demo
aquasecurity/kube-bench
Checks whether Kubernetes is deployed according to security best practices as defined in the CIS Kubernetes Benchmark
back2root/log4shell-rex
PCRE RegEx matching Log4Shell CVE-2021-44228 IOC in your logs
welk1n/JNDI-Injection-Exploit
JNDI注入测试工具(A tool which generates JNDI links can start several servers to exploit JNDI Injection vulnerability,like Jackson,Fastjson,etc)
mubix/CVE-2021-44228-Log4Shell-Hashes
Hashes for vulnerable LOG4J versions
huntresslabs/log4shell-tester
adilsoybali/Log4j-RCE-Scanner
Remote command execution vulnerability scanner for Log4j.
silentsignal/burp-log4shell
Log4Shell scanner for Burp Suite
fullhunt/log4j-scan
A fully automated, accurate, and extensive scanner for finding log4j RCE CVE-2021-44228
unixhot/waf
使用Nginx+Lua实现的WAF(版本v1.0)
beego/beego
beego is an open-source, high-performance web framework for the Go programming language.
disposable-email-domains/disposable-email-domains
a list of disposable and temporary email address domains
filecoin-project/lotus
Reference implementation of the Filecoin protocol, written in Go
wallarm/gotestwaf
An open-source project in Golang to asess different API Security tools and WAF for detection logic and bypasses