sincelong's Stars
h0ny/NacosExploit
Nacos 综合利用工具
MzHmO/Exploit-Street
Complete list of LPE exploits for Windows (starting from 2023)
wy876/POC
收集整理漏洞EXP/POC,大部分漏洞来源网络,目前收集整理了1300多个poc/exp,长期更新。
serge1/COFFI
A header-only C++ library for accessing files in COFF binary format. (Including Windows PE/PE+ formats)
vxunderground/VX-API
Collection of various malicious functionality to aid in malware development
pard0p/CallstackSpoofingPOC
C++ self-Injecting dropper based on various EDR evasion techniques.
myzxcg/RealBlindingEDR
Remove AV/EDR Kernel ObRegisterCallbacks、CmRegisterCallback、MiniFilter Callback、PsSetCreateProcessNotifyRoutine Callback、PsSetCreateThreadNotifyRoutine Callback、PsSetLoadImageNotifyRoutine Callback...
fatedier/frp
A fast reverse proxy to help you expose a local server behind a NAT or firewall to the internet.
Aabyss-Team/ARL
ARL官方仓库备份项目:ARL(Asset Reconnaissance Lighthouse)资产侦察灯塔系统旨在快速侦察与目标关联的互联网资产,构建基础资产信息库。 协助甲方安全团队或者渗透测试人员有效侦察和检索资产,发现存在的薄弱点和攻击面。
rapiz1/rathole
A lightweight and high-performance reverse proxy for NAT traversal, written in Rust. An alternative to frp and ngrok.
epi052/feroxbuster
A fast, simple, recursive content discovery tool written in Rust.
dronavallipranav/rust-obfuscator
Automatic Rust Obfuscator and Macro Library
kyxiaxiang/AV_EDR_EPP_Notes
HavocFramework/Havoc
The Havoc Framework
burp-ext-CryptoTools/CryptoTools
pmiaowu/BurpFastJsonScan
一款基于BurpSuite的被动式FastJson检测插件
ba0gu0/wps-rce
WPS Office RCE On 2023-08-10
rsmudge/Malleable-C2-Profiles
Malleable C2 is a domain specific language to redefine indicators in Beacon's communication. This repository is a collection of Malleable C2 profiles that you may use. These profiles work with Cobalt Strike 3.x.
darkr4y/geacon
Practice Go programming and implement CobaltStrike's Beacon in Go
SummerSec/ShiroAttack2
shiro反序列化漏洞综合利用,包含(回显执行命令/注入内存马)修复原版中NoCC的问题 https://github.com/j1anFen/shiro_attack
0x727/JNDIExploit
一款用于JNDI注入利用的工具,大量参考/引用了Rogue JNDI项目的代码,支持直接植入内存shell,并集成了常见的bypass 高版本JDK的方式,适用于与自动化工具配合使用。
7BitsTeam/EDR-Bypass-demo
Some demos to bypass EDRs or AVs by 78itsT3@m
1y0n/AV_Evasion_Tool
掩日 - 免杀执行器生成工具
HackJava/HackJava
《Java安全-只有Java安全才能拯救宇宙》Only Java Security Can Save The Universe.
CyberMonitor/APT_CyberCriminal_Campagin_Collections
APT & CyberCriminal Campaign Collection
gentilkiwi/mimikatz
A little tool to play with Windows security
threedr3am/JSP-WebShells
Collect JSP webshell of various implementation methods. 收集JSP Webshell的各种姿势
crow821/vulntarget
vulntarget靶场系列
Anduin2017/HowToCook
程序员在家做饭方法指南。Programmer's guide about how to cook at home (Simplified Chinese only).
rebeyond/Behinder
“冰蝎”动态二进制加密网站管理客户端