whwlsfb's Stars
massgravel/Microsoft-Activation-Scripts
Open-source Windows and Office activator featuring HWID, Ohook, KMS38, and Online KMS activation methods, along with advanced troubleshooting.
tonsky/FiraCode
Free monospaced font with programming ligatures
microsoft/playwright
Playwright is a framework for Web Testing and Automation. It allows testing Chromium, Firefox and WebKit with a single API.
hoppscotch/hoppscotch
Open source API development ecosystem - https://hoppscotch.io (open-source alternative to Postman, Insomnia)
swisskyrepo/PayloadsAllTheThings
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
louislam/uptime-kuma
A fancy self-hosted monitoring tool
x64dbg/x64dbg
An open-source user mode debugger for Windows. Optimized for reverse engineering and malware analysis.
skylot/jadx
Dex to Java decompiler
kingToolbox/WindTerm
A professional cross-platform SSH/Sftp/Shell/Telnet/Serial terminal.
rrweb-io/rrweb
record and replay the web
theonedev/onedev
Git Server with CI/CD, Kanban, and Packages. Seamless integration. Unparalleled experience.
rapiz1/rathole
A lightweight and high-performance reverse proxy for NAT traversal, written in Rust. An alternative to frp and ngrok.
DominicBreuker/pspy
Monitor linux processes without root permissions
easychen/pushdeer
开放源码的无App推送服务,iOS14+扫码即用。亦支持快应用/iOS和Mac客户端、Android客户端、自制设备
OISF/suricata
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine developed by the OISF and the Suricata community.
topotam/PetitPotam
PoC tool to coerce Windows hosts to authenticate to other machines via MS-EFSRPC EfsRpcOpenFileRaw or other functions.
lamw/ghettoVCB
ghettoVCB
GhostPack/SharpUp
SharpUp is a C# port of various PowerUp functionality.
sdcb/PaddleSharp
.NET/C# binding for Baidu paddle inference library and PaddleOCR
red-axe/am-editor
A rich text editor that supports collaborative editing and allows for the free use of front-end common libraries such as React and Vue to extend and define plugins.
whwlsfb/Log4j2Scan
Log4j2 RCE Passive Scanner plugin for BurpSuite
SummerSec/learning-codeql
CodeQL Java 全网最全的中文学习资料
LandGrey/ClassHound
利用任意文件下载漏洞循环下载反编译 Class 文件获得网站 Java 源代码
aetkrad/goby_poc
goby poc or exp,分享goby最新网络安全漏洞检测或利用代码
phith0n/zkar
ZKar is a Java serialization protocol analysis tool implement in Go.
antvis/XFlow
React component for building interactive diagrams.
woodpecker-framework/ysoserial-for-woodpecker
给woodpecker框架量身定制的ysoserial
threedr3am/gadgetinspector
一个利用ASM对字节码进行污点传播分析的静态代码审计应用(添加了大量代码注释,适合大家进行源码学习)。也加入了挖掘Fastjson反序列化gadget chains和SQLInject(JdbcTemplate、MyBatis、JPA、Hibernate、原生jdbc等)静态检测功能。并且加入了很多功能以方便进行漏洞自动化挖掘。
ice-doom/codeql_compile
自动反编译闭源应用,创建codeql数据库
ce-automne/SunloginRCE
向日葵RCE,网段扫描/中文显示