Pinned Repositories
Blasting_dictionary
爆破字典
blog.securitainment.io
blog.securitainment.io
cent-nuclei-templates
cent-nuclei-templates
CMWTAT_Digital_Edition
CloudMoe Windows 10 Activation Toolkit get digital license, the best open source Win 10 activator in GitHub. GitHub 上最棒的开源 Win10 数字权利(数字许可证)激活工具!
EQGRP_Lost_in_Translation
The Shadow Brokers "Lost In Translation" leak. Decrypted content of odd.tar.xz.gpg, swift.tar.xz.gpg and windows.tar.xz.gpg
hackingLibrary
APT, Cyber warfare, Penetration testing, Zero-day,Exploiting,Fuzzing,Privilege-Escalation,browser-security,Spyware,Malwres evade anti-virus detection, Rookit CYPTER, Antiviruses Bypassing-av, social engineering,WORMS,Sandbox-Escape, Memory-injection, Ethical,Gray,White,RedTeam,Bugbounty,bug hunter,Cheat Sheet...
K8tools
K8工具合集(内网渗透/提权工具/远程溢出/漏洞利用/扫描工具/密码破解/免杀工具/Exploit/APT/0day/Shellcode/Payload/priviledge/BypassUAC/OverFlow/WebShell/PenTest) Web GetShell Exploit(Struts2/Zimbra/Weblogic/Tomcat/Apache/Jboss/DotNetNuke/zabbix)
noxer
Noxer is a powerful Python script designed for automating Android penetration testing tasks within the Nox Player emulator.
Phantom-Evasion
Python antivirus evasion tool
templates
Collection of templates (nuclei/jaeles..)
wr00t's Repositories
wr00t/templates
Collection of templates (nuclei/jaeles..)
wr00t/CMWTAT_Digital_Edition
CloudMoe Windows 10 Activation Toolkit get digital license, the best open source Win 10 activator in GitHub. GitHub 上最棒的开源 Win10 数字权利(数字许可证)激活工具!
wr00t/admin-login
wr00t/AllAboutBugBounty
All about bug bounty (bypasses, payloads, and etc)
wr00t/Binary-Learning
滴水逆向初、中级学习笔记,不定时更新,自用仓库,不喜勿喷;感谢滴水,有如此完整体系的学习视频,白嫖党嫖了一波...感谢海东老师,听课受益匪浅。
wr00t/Confluence-and-Jira
Docker 部署并破解Jira、Confluence及相关插件
wr00t/CVE-2021-1675
C# and Impacket implementation of CVE-2021-1675/PrintNightmare
wr00t/CVE-2021-1675-LPE
Local Privilege Escalation Edition for CVE-2021-1675
wr00t/CVE-2021-25641-Proof-of-Concept
Apache/Alibaba Dubbo <= 2.7.3 PoC Code for CVE-2021-25641 RCE via Deserialization of Untrusted Data; Affects Versions <= 2.7.6 With Different Gadgets
wr00t/CVE-2021-27850_POC
A Proof of concept for CVE-2021-27850 affecting Apache Tapestry and leading to unauthencticated remote code execution.
wr00t/CVE-2021-29425
PoC for exploiting CVE-2021-29425 : In Apache Commons IO before 2.7, When invoking the method FileNameUtils.normalize with an improper input string, like "//../foo", or "\\..\foo", the result would be the same value, thus possibly providing access to files in the parent directory, but not further above (thus "limited" path traversal), if the calling code would use the result to construct a path value.
wr00t/Cyberspace_Survey
wr00t/InScan
边界打点后的自动化渗透工具
wr00t/lavarel-phpunit-rce-masscaner
Masscanner for Laravel phpunit RCE CVE-2017-9841
wr00t/Lockdoor-Framework
🔐 Lockdoor Framework : A Penetration Testing framework with Cyber Security Resources
wr00t/NC-BeanShell-RCE
CNVD-2021-30167 用友NC BeanShell远程代码执行
wr00t/orbitaldump
A simple multi-threaded distributed SSH brute-forcing tool written in Python
wr00t/Penetration_Testing_POC
有关渗透测试的POC、EXP、脚本、提权、小工具等---About penetration-testing python-script poc getshell csrf xss cms php-getshell domainmod-xss penetration-testing-poc csrf-webshell cobub-razor cve rce sql sql-poc poc-exp bypass oa-getshell cve-cms
wr00t/phoneinfoga
Information gathering & OSINT framework for phone numbers
wr00t/PocList
Alibaba-Nacos-Unauthorized/ApacheDruid-RCE_CVE-2021-25646/MS-Exchange-SSRF-CVE-2021-26885/Oracle-WebLogic-CVE-2021-2109_RCE/RG-CNVD-2021-14536/RJ-SSL-VPN-UltraVires/Redis-Unauthorized-RCE/TDOA-V11.7-GetOnlineCookie/VMware-vCenter-GetAnyFile/yongyou-GRP-U8-XXE/Oracle-WebLogic-CVE-2020-14883/Oracle-WebLogic-CVE-2020-14882/Apache-Solr-GetAnyFile/F5-BIG-IP-CVE-2021-22986/Sonicwall-SSL-VPN-RCE/GitLab-Graphql-CNVD-2021-14193/D-Link-DCS-CVE-2020-25078/WLAN-AP-WEA453e-RCE/360TianQing-Unauthorized/360TianQing-SQLinjection/FanWeiOA-V8-SQLinjection/QiZhiBaoLeiJi-AnyUserLogin/QiAnXin-WangKangFirewall-RCE/金山-V8-终端安全系统/NCCloud-SQLinjection/ShowDoc-RCE
wr00t/post-hub
内网仓库:远控、提权、免杀、代理、横向、清理
wr00t/PrintNightmare
wr00t/python-small-examples
告别枯燥,致力于打造 Python 实用小例子
wr00t/SCFProxy
A little proxy tool based on Tencent Cloud Function Service.
wr00t/TongdaOA-exp
TongdaOA 11.7 ~11.8 通达OA,任意用户登录+后台getshell
wr00t/Viper
Viper (炫彩蛇) 开源图形化内网渗透工具
wr00t/vulnerability-paper
收集的文章
wr00t/weaver_exp
泛微OA漏洞综合利用脚本
wr00t/WebBatchRequest
WEB批量请求器(WebBatchRequest)是对目标地址批量进行快速的存活探测、Title获取,简单的banner识别,支持HTTP代理以及可自定义HTTP请求用于批量的漏洞验证等的一款基于JAVA编写的轻量工具。
wr00t/yongyou_nc_poc