w2272839663's Stars
swisskyrepo/PayloadsAllTheThings
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
clash-verge-rev/clash-verge-rev
A modern GUI client based on Tauri, designed to run in Windows, macOS and Linux for tailored proxy experience
projectdiscovery/nuclei
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.
PowerShellMafia/PowerSploit
PowerSploit - A PowerShell Post-Exploitation Framework
pandora-next/deploy
Pandora Cloud + Pandora Server + Shared Chat + BackendAPI Proxy + Chat2API + Signup Free = PandoraNext. New GPTs(Gizmo) UI, All in one!
projectdiscovery/nuclei-templates
Community curated list of templates for the nuclei engine to find security vulnerabilities.
knownsec/404StarLink
404StarLink - 推荐优质、有意义、有趣、坚持维护的安全开源项目
lockfale/OSINT-Framework
OSINT Framework
hfiref0x/UACME
Defeating Windows User Account Control
0xInfection/Awesome-WAF
🔥 Web-application firewalls (WAFs) from security standpoint.
fr0gger/Awesome-GPT-Agents
A curated list of GPT agents for cybersecurity
Ridter/Intranet_Penetration_Tips
2018年初整理的一些内网渗透TIPS,后面更新的慢,所以整理出来希望跟小伙伴们一起更新维护~
Threekiii/Awesome-POC
一个漏洞POC知识库 目前数量 1000+
deanxv/coze-discord-proxy
代理Discord对话Coze-Bot,实现以API形式请求GPT4模型,提供对话、文生图、图生文、知识库检索等功能。
pwntester/ysoserial.net
Deserialization payload generator for a variety of .NET formatters
ExpLangcn/NucleiTP
自动整合全网Nuclei的漏洞POC,实时同步更新最新POC!
Voorivex/pentest-guide
Penetration tests guide based on OWASP including test cases, resources and examples.
API-Security/APIKit
APIKit:Discovery, Scan and Audit APIs Toolkit All In One.
Threekiii/Vulnerability-Wiki
基于 docsify 快速部署 Awesome-POC 中的漏洞文档
qi4L/JYso
JNDIExploit or a ysoserial.
lengjibo/RedTeamTools
记录自己编写、修改的部分工具
J0o1ey/BountyHunterInChina
重生之我在安全行业讨口子系列,分享在安全行业讨口子过程中,SRC、项目实战的有趣案例
f0ng/autoDecoder
Burp插件,根据自定义来达到对数据包的处理(适用于加解密、爆破等),类似mitmproxy,不同点在于经过了burp中转,在自动加解密的基础上,不影响APP、网站加解密正常逻辑等。
sml2h3/ddddocr-fastapi
使用ddddocr的最简api搭建项目,支持docker
0x727/BypassPro
对权限绕过自动化bypass的burpsuite插件
Bo0oM/WAF-bypass-Cheat-Sheet
Another way to bypass WAF Cheat Sheet (draft)
Just-Hack-For-Fun/Linux-INCIDENT-RESPONSE-COOKBOOK
Linux 应急响应手册
bcvgh/daydayEXP
支持自定义Poc文件的图形化漏洞利用工具
JamesHopbourn/Apple-Automation
iOS/macOS 自动化,效率玩法探索。
threecha/wxappUnpacker
基于node的微信小程序反编译工具,在前人的基础上修复了几个程序报错问题。