superfish9's Stars
danielmiessler/SecLists
SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.
sqlmapproject/sqlmap
Automatic SQL injection and database takeover tool
fortra/impacket
Impacket is a collection of Python classes for working with network protocols.
jgamblin/Mirai-Source-Code
Leaked Mirai Source Code for Research/IoC Development Purposes
haad/proxychains
proxychains - a tool that forces any TCP connection made by any given application to follow through proxy like TOR or any other SOCKS4, SOCKS5 or HTTP(S) proxy. Supported auth-types: "user/pass" for SOCKS4/5, "basic" for HTTP.
djadmin/awesome-bug-bounty
A comprehensive curated list of available Bug Bounty & Disclosure Programs and Write-ups.
epinna/tplmap
Server-Side Template Injection and Code Injection Detection and Exploitation Tool
nixawk/pentest-wiki
PENTEST-WIKI is a free online security knowledge library for pentesters / researchers. If you have a good idea, please share it with others.
knownsec/Pocsuite
This project has stopped to maintenance, please to https://github.com/knownsec/pocsuite3 project.
ring04h/wydomain
to discover subdomains of your target domain
xl7dev/BurpSuite
BurpSuite using the document and some extensions
zhengmin1989/TheSevenWeapons
安卓动态调试七种武器