sara-kathryn's Stars
enaqx/awesome-pentest
A collection of awesome penetration testing resources, tools and other shiny things
qeeqbox/social-analyzer
API, CLI, and Web App for analyzing and finding a person's profile in 1000 social media \ websites
hslatman/awesome-threat-intelligence
A curated list of Awesome Threat Intelligence resources
trickest/cve
Gather and update all available and newest CVEs with their PoC.
mantvydasb/RedTeaming-Tactics-and-Techniques
Red Teaming Tactics and Techniques
reddelexc/hackerone-reports
Top disclosed reports from HackerOne
GrrrDog/Java-Deserialization-Cheat-Sheet
The cheat sheet about Java Deserialization vulnerabilities
Netflix-Skunkworks/Scumblr
Web framework that allows performing periodic syncs of data sources and performing analysis on the identified results
ossf/criticality_score
Gives criticality score for an open source project
mesquidar/ForensicsTools
A list of free and open forensics analysis tools and other resources
CodeIntelligenceTesting/jazzer
Coverage-guided, in-process fuzzing for the JVM
hackerscrolls/SecurityTips
googleprojectzero/0days-in-the-wild
Repository for information about 0-days exploited in-the-wild.
gobysec/GobyVuls
Vulnerabilities of Goby supported with exploitation.
wietze/HijackLibs
Project for tracking publicly disclosed DLL Hijacking opportunities.
gi11es/equal-pay-for-equal-work
This is a list of organizations that pay remote workers equally regardless of their location
mxm0z/awesome-intelligence-writing
Collection of awesome resources on intelligence writing, including manuals/guides, standards, books, tranings, articles, videos, etc
matamorphosis/Scrummage
A Holistic OSINT and Threat Hunting Platform
vulsio/go-cve-dictionary
Build a local copy of CVE (NVD and Japanese JVN). Server mode for easy querying.
ossf/wg-securing-critical-projects
Helping allocate resources to secure the critical open source projects we all depend on.
evilsocket/jscythe
Abuse the node.js inspector mechanism in order to force any node.js/electron/v8 based process to execute arbitrary javascript code.
PalindromeLabs/awesome-websocket-security
Awesome information for WebSockets security research
todogroup/ospology
📖 OSPOlogy - The Study of OSPOs
CVEProject/automation-working-group
CVE Automation Working Group
shadowsock5/Poc
PoC collection of Atlassian(Jira, Confluence, Bitbucket) products and Jenkins, Solr, Nexus
edoardottt/secfiles
My useful files for penetration tests, security assessments, bug bounty and other security related stuff
ossf-cve-benchmark/ossf-cve-benchmark
The OpenSSF CVE Benchmark consists of code and metadata for over 200 real life CVEs, as well as tooling to analyze the vulnerable codebases using a variety of static analysis security testing (SAST) tools and generate reports to evaluate those tools.
abathelt/EvidenceWiki
All of my threat intel recommendations for aspiring Information Security Analyst. This section contains information about evidence at analyst's disposal IP, domain, email, hash, files.
ianxtianxt/CVE-2015-7501
(CVE-2015-7501)JBoss JMXInvokerServlet 反序列化漏洞
JLLeitschuh/security-research
Public disclosure channel for security vulnerabilities