Pinned Repositories
-E-Cology-WorkflowServiceXml-RCE_POC
360Quake
360 QuakeAPI批量查询工具
ArbitraryFileReadList
CTF中任意文件读取的fuzz列表 (Arbitrary file read fuzz list in CTF)
bug-monitor
Seebug、structs、cve漏洞实时监控推送系统🔦
Bypass-PHP-GD-Process-To-RCE
Reference: http://www.secgeek.net/bookfresh-vulnerability/
bypass_disablefunc_via_LD_PRELOAD
bypass disable_functions via LD_PRELOA
caex
LuWu_manage
陆吾漏洞生命周期管理系统
wh0amis's Repositories
wh0amis/-E-Cology-WorkflowServiceXml-RCE_POC
wh0amis/360Quake
360 QuakeAPI批量查询工具
wh0amis/ArbitraryFileReadList
CTF中任意文件读取的fuzz列表 (Arbitrary file read fuzz list in CTF)
wh0amis/caex
wh0amis/ClassHound
利用任意文件下载漏洞循环下载反编译 Class 文件获得网站 Java 源代码
wh0amis/codeql-uboot
wh0amis/csOnvps
CobaltStrike4.4 一键部署脚本 随机生成密码、key、端口号、证书等,解决cs4.x无法运行在Linux上报错问题 灰常银杏化设计
wh0amis/cve-2020-11651
wh0amis/CVE-2021-21972
VMware vCenter Server远程代码执行漏洞 (CVE-2021-21972)批量检测脚本
wh0amis/framework
ThinkPHP Framework
wh0amis/fuck_waf_jspx
能绕过waf的jspx cmd shell,参考了sevck前辈的https://www.cnblogs.com/sevck/p/7069251.html
wh0amis/hwtools
wh0amis/iast
wh0amis/LadonGo
Ladon Scanner For Golang (Full platform penetration scanner framework)LadonGo一款开源渗透扫描器框架,使用它可轻松批量探测C段、B段存活主机、指纹识别、端口扫描、密码爆破、高危漏洞检测等。1.0版本包含11个模块功能,高危漏洞检测MS17010、SmbGhost,密码爆破SmbScan、SshScan、FtpScan、MysqlScan,存活探测/信息收集/指纹识别PingScan、IcmpScan,BannerScan、WeblogicScan,端口扫描PortScan。
wh0amis/linux_dirty
更改后的脏牛提权代码,可以往任意文件写入任意内容,去除交互过程
wh0amis/OffensiveNim
My experiments in weaponizing Nim (https://nim-lang.org/)
wh0amis/PasswordDic
2011-2019年Top100弱口令密码字典 Top1000密码字典 服务器SSH/VPS密码字典 后台管理密码字典 数据库密码字典 子域名字典
wh0amis/PHPMailer
The classic email sending library for PHP
wh0amis/PoC
Issues has been disabled for these PoC's, as they are simply PoC, Public Domain and unsupported.
wh0amis/python-webshell
webshell writen in python
wh0amis/SCFProxy
A little proxy tool based on Tencent Cloud Function Service.
wh0amis/seeyon_fileupload
致远oa文件上传;批量检测;getshell
wh0amis/seeyonAjaxGetshell
致远OA seeyon未授权漏洞批量getshell
wh0amis/Shellcode_Memory_Loader
基于Golang实现的Shellcode内存加载器,共实现3中内存加载shellcode方式,UUID加载,MAC加载和IPv4加载,目前能过主流杀软(包括Windows Defender)
wh0amis/signature-base
Signature base for my scanner tools
wh0amis/social-warfare
This is a public repository for the Social Warfare WordPress plugin created primarily for the purpose of publishing and maintaining a public list of bugs, known issues, and feature requests with the community at large.
wh0amis/SpringBootVulExploit
SpringBoot 相关漏洞学习资料,利用方法和技巧合集,黑盒安全评估 checklist
wh0amis/TongDaOA-Fake-User
通达OA 任意用户登录漏洞
wh0amis/unauthorized-check
扫描常见未授权访问(redis、mongodb、memcached、elasticsearch、zookeeper、ftp、CouchDB、docker、Hadoop)
wh0amis/webshell
This is a webshell open source project