payI0ad's Stars
jiangsir404/Audit-Learning
记录自己对《代码审计》的理解和总结,对危险函数的深入分析以及在p牛的博客和代码审计圈的收获
devanshbatham/Awesome-Bugbounty-Writeups
A curated list of bugbounty writeups (Bug type wise) , inspired from https://github.com/ngalongc/bug-bounty-reference
httpvoid/writeups
ariya/phantomjs
Scriptable Headless Browser
Lotus6/AutoRepeater
Burp插件,自动化挖掘SSRF,Redirect,Sqli漏洞,自定义匹配参数
apache/ambari
Apache Ambari simplifies provisioning, managing, and monitoring of Apache Hadoop clusters.
ClaymanTwinkle/FlySword
a fly sword mod for minecraft
frohoff/ysoserial
A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.
xsleaks/xsleaks
A collection of browser-based side channel attack vectors.
OWASP/CheatSheetSeries
The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.
george518/PPGo_Job
PPGo_Job是一款可视化的、多人多权限的、一任务多机执行的定时任务管理系统,采用golang开发,安装方便,资源消耗少,支持大并发,可同时管理多台服务器上的定时任务。
Hardw01f/Vulnerability-goapp
Web application build Golang with Vulnerability
ine-labs/AWSGoat
AWSGoat : A Damn Vulnerable AWS Infrastructure
Aabyss-Team/awsKeyTools
AWS云平台 AccessKey 泄漏利用工具
wagiro/BurpBounty
Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that allows you, in a quick and simple way, to improve the active and passive scanner by means of personalized rules through a very intuitive graphical interface.
microsoft/dotnet-podcasts
.NET reference application shown at .NET Conf featuring ASP.NET Core, Blazor, .NET MAUI, Microservices, Orleans, Playwright, and more!
dotnet/runtime
.NET is a cross-platform runtime for cloud, mobile, desktop, and IoT apps.
Power7089/SmeltingStone
此处是【炼石计划@Java代码审计】知识星球课程目录整理处。 【炼石计划@Java代码审计】专注Java代码审计入门与提升,我将学习路线分成了六个阶段也对应着六大套课程分享。 课程内容不深入开发细节,只关注Java代码审计应学应会的内容。
ambionics/phpggc
PHPGGC is a library of PHP unserialize() payloads along with a tool to generate them, from command line or programmatically.
ffffffff0x/1earn
ffffffff0x 团队维护的安全知识框架,内容包括不仅限于 web安全、工控安全、取证、应急、蓝队设施部署、后渗透、Linux安全、各类靶机writup
jas502n/sangfor
个人维护的安全知识框架,内容包括不仅限于 web安全、工控安全、取证、应急、蓝队设施部署、后渗透、Linux安全、各类靶机writup
WerWolv/ImHex
🔍 A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM.
OpenTenBase/OpenTenBase
OpenTenBase is an enterprise-level distributed HTAP open source database.
duoergun0729/2book
《Web安全之深度学习实战》
securebinary/firebaseExploiter
FirebaseExploiter is a vulnerability discovery tool that discovers Firebase Database which are open and can be exploitable. Primarily built for mass hunting bug bounties and for penetration testing.
firebase/quickstart-js
Firebase Quickstart Samples for Web
kesixin/QuestionWechatApp
答题小程序,刷题小程序,微信小程序,考试小程序。毕业设计小程序,有前后端完整源码和数据库,易于二次开发。还可用于考试活动,企业内部考核,内部培训等职业考试刷题。
seonon/knockdown
答题小程序 - 自定义题库
ZuodaoTech/everyone-can-use-english
人人都能用英语
eastmountyxz/CTF-Web-WP
该资源为作者CTF学习Web类型题目解题思路,希望对您有所帮助~