xf5542's Stars
projectdiscovery/nuclei
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.
x676f64/secureum-mind_map
Central Repository for the Epoch 0 coursework and quizzes. Contains all the content, cross-referenced and linked.
PlexPt/awesome-chatgpt-prompts-zh
ChatGPT 中文调教指南。各种场景使用指南。学习怎么让它听你的话。
f/awesome-chatgpt-prompts
This repo includes ChatGPT prompt curation to use ChatGPT better.
yichensec/yichen_Password_dictionary
逸尘的字典 渗透测试个人专用的字典,搜索网上,及自己平常收集的一些路径,其中信息包括HVV中常见的各大厂商的弱密码,web常见漏洞测试,会遇到的邮箱,密码,服务弱口令,中间件,子域名,漏洞路径,账户密码,等等,这些内容都是基于本人在实战中收集到的,其中包含Github上公布的密码字典整合,堪称最经典的字典,用这个足以满足日常src,渗透测试,资产梳理,红蓝对抗等前期探测工作。
chaitin/xray
一款完善的安全评估工具,支持常见 web 安全问题扫描和自定义 poc | 使用之前务必先阅读文档
vulhub/vulhub
Pre-Built Vulnerable Environments Based on Docker-Compose
gh0stkey/RGPerson
RGPerson - Randomly generate identity information
davinci1010/pinduoduo_backdoor
拼多多apk内嵌提权代码,及动态下发dex分析
dwisiswant0/apkleaks
Scanning APK file for URIs, endpoints & secrets.
zhuifengshaonianhanlu/pikachu
一个好玩的Web安全-漏洞测试平台
VideoTogether/VideoTogether
Browser Extension to Sync Video Playback on All Video Platforms / 一起看视频浏览器插件,兼容所有平台
PeiQi0/PeiQi-WIKI-Book
面向网络安全从业者的知识文库🍃
codecrafters-io/build-your-own-x
Master programming by recreating your favorite technologies from scratch.
payloadbox/xss-payload-list
🎯 Cross Site Scripting ( XSS ) Vulnerability Payload List
payloadbox/sql-injection-payload-list
🎯 SQL Injection Payload List
payloadbox/command-injection-payload-list
🎯 Command Injection Payload List
ffffffff0x/name-fuzz
针对目标已知信息的字典生成工具
ffuf/ffuf
Fast web fuzzer written in Go
White-hua/Apt_t00ls
高危漏洞利用工具
pingc0y/go_proxy_pool
无环境依赖开箱即用的代理IP池
danielmiessler/SecLists
SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.
AdminTest0/SharpWxDump
微信客户端取证,可获取用户个人信息(昵称/账号/手机/邮箱/数据库密钥(用来解密聊天记录));支持获取多用户信息,不定期更新新版本偏移,目前支持所有新版本、正式版本
jorhelp/Ingram
网络摄像头漏洞扫描工具 | Webcam vulnerability scanning tool
SocialSisterYi/bilibili-API-collect
哔哩哔哩-API收集整理【不断更新中....】
iiiusky/alicloud-tools
阿里云ECS、策略组辅助小工具
ezshine/wxapkg-convertor
一个反编译微信小程序的工具,仓库也收集各种微信小程序/小游戏.wxapkg文件
WangYihang/GitHacker
🕷️ A `.git` folder exploiting tool that is able to restore the entire Git repository, including stash, common branches and common tags.
guyoung/CaptfEncoder
Captfencoder is opensource a rapid cross platform network security tool suite, providing network security related code conversion, classical cryptography, cryptography, asymmetric encryption, miscellaneous tools, and aggregating all kinds of online tools.
AntSwordProject/AntSword-Loader
AntSword 加载器