yoghurt321's Stars
f0ng/captcha-killer-modified
captcha-killer的修改版,支持关键词识别base64编码的图片,添加免费ocr库,用于验证码爆破,适配新版Burpsuite
PortSwigger/turbo-intruder
Turbo Intruder is a Burp Suite extension for sending large numbers of HTTP requests and analyzing the results.
shuanx/BurpAPIFinder
攻防演练过程中,我们通常会用浏览器访问一些资产,但很多未授权/敏感信息/越权隐匿在已访问接口过html、JS文件等,该插件能让我们发现未授权/敏感信息/越权/登陆接口等。
F6JO/JsRouteScan
Burpsuite - Js Route Scan 正则匹配获取响应中的路由进行被动探测与递归目录探测的burp插件
Tsojan/TsojanScan
An integrated BurpSuite vulnerability detection plug-in.
DS4SD/docling
Get your documents ready for gen AI
jivoi/awesome-osint
:scream: A curated list of amazingly awesome OSINT
Lissy93/web-check
🕵️♂️ All-in-one OSINT tool for analysing any website
jpillora/chisel
A fast TCP/UDP tunnel over HTTP
gentilkiwi/mimikatz
A little tool to play with Windows security
decoder-it/juicy-potato
A sugared version of RottenPotatoNG, with a bit of juice, i.e. another Local Privilege Escalation tool, from a Windows Service Accounts to NT AUTHORITY\SYSTEM.
breenmachine/RottenPotatoNG
New version of RottenPotato as a C++ DLL and standalone C++ binary - no need for meterpreter or other tools.
tomac/yersinia
A framework for layer 2 attacks
ParrotSec/mimikatz
infosecn1nja/AD-Attack-Defense
Attack and defend active directory using modern post exploitation adversary tradecraft activity
antonioCoco/RunasCs
RunasCs - Csharp and open version of windows builtin runas.exe
carlospolop/Auto_Wordlists
asaotomo/ZipCracker
ZipCracker是一款由Hx0战队开发的高性能多并发破解工具,专为破解密码保护的Zip文件而设计。它采用CRC32碰撞和字典攻击方式猜测Zip文件的明文或密码,并能成功提取其中的内容。这款工具具备识别"伪加密"Zip文件的能力,并能自动进行修复。因此,它非常适合在CTF比赛中使用。(ZipCracker by Hx0 team is a tool for cracking passwords on Zip files, great for CTF competitions.)
lijiejie/GitHack
A `.git` folder disclosure exploit
maurosoria/dirsearch
Web path scanner
lemonlove7/dirsearch_bypass403
目录扫描+JS文件中提取URL和子域+403状态绕过+指纹识别
Aiyflowers/JWT_GUI
基于pyqt5和pyjwt实现的jwt加解密爆破一体化工具(ps:其实是水的python课设)
Maskhe/javasec
自己学习java安全的一些总结,主要是安全审计相关
HackGolang/HackGolang
《Go语言安全-只有Go安全才能拯救地球》Only Golang Security Can Save The Earth.
hongriSec/PHP-Audit-Labs
一个关于PHP的代码审计项目
JnuSimba/MiscSecNotes
some learning notes about Web Application Security、 Penetration Test
wtsxDev/reverse-engineering
List of awesome reverse engineering resources
hacklcx/HFish
安全、可靠、简单、免费的企业级蜜罐
Threezh1/SiteCopy
sitecopy is a tool that facilitates personal website backup and network data collection
biggerduck/RedTeamNotes
红队笔记