Pinned Repositories
1000php
1000个PHP代码审计案例(2016.7以前乌云公开漏洞)
agnes
android上的wifi钓鱼应用
BurpSuite
BurpSuite using the document and some extensions
cobra
Cobra(眼镜蛇) - Static code security scanner & analyser (白盒代码安全扫描与分析系统)
exploit-database
The official Exploit Database repository
front-end-collect
分享自己长期关注的前端开发相关的优秀网站、博客、以及活跃开发者
Hackerone
Hackerone disclosed report URL Aggregator
Mind-Map
各种安全相关思维导图整理收集
public-pentesting-reports
Curated list of public penetration test reports released by several consulting firms and academic security groups
Web-Security-Learning
Web-Security-Learning
xiaohen's Repositories
xiaohen/Mind-Map
各种安全相关思维导图整理收集
xiaohen/public-pentesting-reports
Curated list of public penetration test reports released by several consulting firms and academic security groups
xiaohen/Web-Security-Learning
Web-Security-Learning
xiaohen/1000php
1000个PHP代码审计案例(2016.7以前乌云公开漏洞)
xiaohen/agnes
android上的wifi钓鱼应用
xiaohen/BurpSuite
BurpSuite using the document and some extensions
xiaohen/cobra
Cobra(眼镜蛇) - Static code security scanner & analyser (白盒代码安全扫描与分析系统)
xiaohen/exploit-database
The official Exploit Database repository
xiaohen/front-end-collect
分享自己长期关注的前端开发相关的优秀网站、博客、以及活跃开发者
xiaohen/Hackerone
Hackerone disclosed report URL Aggregator
xiaohen/htshells
Self contained htaccess shells and attacks
xiaohen/HTTPoxyScan
HTTPoxy Exploit Scanner by 1N3 @CrowdShield
xiaohen/IIS-short-filename
IIS short filename
xiaohen/Inveigh
Inveigh is a Windows PowerShell LLMNR/NBNS spoofer/man-in-the-middle tool
xiaohen/MyArticles
蒸米的文章(iOS冰与火之歌系列,一步一步学ROP系列,安卓动态调试七种武器系列等)
xiaohen/PayloadsAllTheThings
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
xiaohen/pixiewps
An offline WPS bruteforce utility
xiaohen/POC-T
模块化并发框架,可处理渗透测试中 采集/爬虫/爆破/批量PoC 等需要并发的任务。
xiaohen/py-security-audit-tool
python security audit tool,用于python源码的代码审计,支持命令注入,sql注入
xiaohen/python-xss-filter
Based on native Python module HTMLParser purifier of HTML, To Clear all javascript in html
xiaohen/sangebaimao_20151112
2015.11.12 三个白帽一题的源码
xiaohen/Software-Security-Learning
Software-Security-Learning
xiaohen/sscan
SSH密码扫描
xiaohen/TaintSee
第八届全国大学生信息安全竞赛 一等奖项目:TaintFlow安卓隐私泄漏流向监控防护系统 的“用户控制模块“ 中的用户操作界面
xiaohen/weakfilescan
动态多线程敏感信息泄露检测工具
xiaohen/webshell
This is a webshell open source project
xiaohen/websoc-cli
从文本中匹配IP并自动创建WebSOC扫描任务
xiaohen/wyproxy
Proxying And Recording HTTP/HTTPs/Socks5 proxy flow, Save To Mysql Database.
xiaohen/XDCTF2015
writeup about XDCTF 2015
xiaohen/xiaohen.github.io
thorns blog