hakuQAQ's Stars
A-poc/RedTeam-Tools
Tools and Techniques for Red Team / Penetration Testing
0x727/BypassPro
对权限绕过自动化bypass的burpsuite插件
G3et/Search_Viewer
集Fofa、Hunter鹰图、Shodan、360 quake、Zoomeye 钟馗之眼、censys 为一体的空间测绘gui图形界面化工具,支持一键采集爬取和导出fofa、shodan等数据,方便快捷查看
KALILINUXTRICKSYT/easysploit
EasySploit - Metasploit automation (EASIER and FASTER than EVER)
zangcc/Aazhen-RexHa
自研JavaFX图形化漏洞扫描工具,支持扫描的漏洞分别是: ThinkPHP-2.x-RCE, ThinkPHP-5.0.23-RCE, ThinkPHP5.0.x-5.0.23通杀RCE, ThinkPHP5-SQL注入&敏感信息泄露, ThinkPHP 3.x 日志泄露NO.1, ThinkPHP 3.x 日志泄露NO.2, ThinkPHP 5.x 数据库信息泄露的漏洞检测,以及批量检测的功能。漏洞POC基本适用ThinkPHP全版本漏洞。
rustdesk/rustdesk
An open-source remote desktop application designed for self-hosting, as an alternative to TeamViewer.
jammny/jws-cli
全自动化信息收集工具,解放双手。
Threekiii/Awesome-Redteam
一个攻防知识仓库 Red Teaming and Offensive Security
vivo/MoonBox
月光宝盒:无侵入的流量录制与回放平台 A server-side traffic capture and replay platform with noninvasive
zijie0/HumanSystemOptimization
健康学习到150岁 - 人体系统调优不完全指南
easychen/howto-make-more-money
程序员如何优雅的挣零花钱,2.0版,升级为小书了。Most of this not work outside China , so no English translate
HavocFramework/Havoc
The Havoc Framework.
mariocandela/beelzebub
A secure low code honeypot framework, leveraging AI for System Virtualization.
swisskyrepo/InternalAllTheThings
Active Directory and Internal Pentest Cheatsheets
F6JO/RouteVulScan
Burpsuite - Route Vulnerable Scanning 递归式被动检测脆弱路径的burp插件
TideSec/TscanPlus
一款综合性网络安全检测和运维工具,旨在快速资产发现、识别、检测,构建基础资产信息库,协助甲方安全团队或者安全运维人员有效侦察和检索资产,发现存在的薄弱点和攻击面。
hideckies/exploit-notes
Sticky notes for pentesting, bug bounty, CTF.
activecm/rita-legacy
Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis.
wgwang/awesome-LLMs-In-China
**大模型
Soufaker/laoyue
自动化监控赏金项目-定期收集资产,漏洞进行推送(现在可以稳定收菜,有问题issues我)-关注-夜安团队SEC-加我微信进群可下载最新自动化版本,git目前不会更新了,群里目前版本1.3.1,项目优化了非常多,功能也加入了非常多,建议进群(没收费项目放心白嫖)
soxoj/maigret
🕵️♂️ Collect a dossier on a person by username from thousands of sites
sp4zcmd/WeblogicExploit-GUI
Weblogic漏洞利用图形化工具 支持注入内存马、一键上传webshell、命令执行
cckuailong/hostscan
自动化Host碰撞工具,帮助红队快速扩展网络边界,获取更多目标点
FalconForceTeam/FalconHound
FalconHound is a blue team multi-tool. It allows you to utilize and enhance the power of BloodHound in a more automated fashion. It is designed to be used in conjunction with a SIEM or other log aggregation tool.
Idov31/MrKaplan
MrKaplan is a tool aimed to help red teamers to stay hidden by clearing evidence of execution.
alphaSeclab/awesome-webshell
Awesome webshell collection. Including 150 Github repo, and 200+ blog posts.
chaitin/xpoc
为供应链漏洞扫描设计的快速应急响应工具 [快速应急] [漏洞扫描] [端口扫描] [xray2.0进行时] A fast emergency response tool designed for supply chain vulnerability scanning.
microsoft/AI-For-Beginners
12 Weeks, 24 Lessons, AI for All!
jhaddix/tbhm
The Bug Hunters Methodology
iSafeBlue/Mind-Map
超详细的渗透测试思维导图