Pinned Repositories
michaellcader's Repositories
michaellcader/api_wordlist
A wordlist of API names for web application assessments
michaellcader/audits
michaellcader/awesome_windows_logical_bugs
collect for learning cases
michaellcader/capital
A built-to-be-vulnerable API application based on the OWASP top 10 API vulnerabilities. Use c{api}tal to learn, train and exploit API Security vulnerabilities within your own API Security CTF.
michaellcader/chatgpt-web-midjourney-proxy
chatgpt web, midjourney, gpts,tts, whisper 一套ui全搞定
michaellcader/crAPI
completely ridiculous API (crAPI)
michaellcader/CVE-2023-32353-PoC
Proof of Concept Code for CVE-2023-32353: Local privilege escalation via iTunes in Windows
michaellcader/CVE-2023-4357-Chrome-XXE
CVE-2023-4357,Chrome XXE 漏洞 POC,实现对访客者本地文件读取。CVE-20123-4357, Chrome XXE vulnerability POC, allowing attackers to obtain local files of visitors.
michaellcader/FindSomething
基于chrome、firefox插件的被动式信息泄漏检测工具
michaellcader/ghauri
An advanced cross-platform tool that automates the process of detecting and exploiting SQL injection security flaws
michaellcader/hooker
🔥🔥hooker是一个基于frida实现的逆向工具包。为逆向开发人员提供统一化的脚本包管理方式、通杀脚本、自动化生成hook脚本、内存漫游探测activity和service、firda版JustTrustMe、disable ssl pinning
michaellcader/JS-Forward
前端参数加密渗透测试通用解决方案
michaellcader/katana
A next-generation crawling and spidering framework.
michaellcader/KB
Knowledge Base collects, stores, and retrieves known vulnerabilities.
michaellcader/LoggerPlusPlus-API-Filters
A Collection of Logger++ Filters for Hunting API Vulnerabilities
michaellcader/medusa
Binary instrumentation framework based on FRIDA
michaellcader/michaellcader.github.io
michaellcader/MoveCertificate
support android7+ Move certificate.
michaellcader/nuclei
Fast and customizable vulnerability scanner based on simple YAML based DSL.
michaellcader/nuclei-action
Application Security Testing with Nuclei
michaellcader/nuclei-templates
All Nuclei Templates
michaellcader/ParamSpider
Mining parameters from dark corners of Web Archives
michaellcader/SCRIPT
python
michaellcader/subfinder-action
Fast and passive subdomain enumeration.
michaellcader/svgxss
michaellcader/urlschemes
michaellcader/vapi
vAPI is Vulnerable Adversely Programmed Interface which is Self-Hostable API that mimics OWASP API Top 10 scenarios through Exercises.
michaellcader/vscan
开源、轻量、快速、跨平台 的网站漏洞扫描工具,帮助您快速检测网站安全隐患。功能 端口扫描(port scan) 指纹识别(fingerprint) 漏洞检测(nday check) 智能爆破 (admin brute) 敏感文件扫描(file fuzz)
michaellcader/WeChatOpenDevTools
michaellcader/WordList