yuebusao's Stars
minio/minio
MinIO is a high-performance, S3 compatible object store, open sourced under GNU AGPLv3 license.
semgrep/semgrep
Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.
apernet/OpenGFW
OpenGFW is a flexible, easy-to-use, open source implementation of GFW (Great Firewall of China) on Linux
billryan/resume
An elegant \LaTeX\ résumé template. 大陆镜像 https://gods.coding.net/p/resume/git
shmilylty/OneForAll
OneForAll是一款功能强大的子域收集工具
google/magika
Detect file content types with deep learning
thinkgem/jeesite
Java rapid development platform, based (Spring Boot, Spring MVC, Apache Shiro, MyBatis, Beetl, Bootstrap, AdminLTE), online code generation, including modules: Organization, role users, menu and button authorization, data permissions, system parameters, content management, workflow, etc. Loose coupling design is adopted; one key skin switch; account security Settings, password policies; Online scheduled task configuration; Support cluster, support SAAS; Support for multiple data sources
baidu/openrasp
🔥Open source RASP solution
88250/symphony
🎶 一款用 Java 实现的现代化社区(论坛/问答/BBS/社交网络/博客)系统平台。A modern community (forum/Q&A/BBS/SNS/blog) system platform implemented in Java. https://ld246.com
vvmdx/Sec-Interview-4-2023
一个2023届毕业生在毕业前持续更新、收集的安全岗面试题及面试经验分享~
JoyChou93/java-sec-code
Java web common vulnerabilities and security code which is base on springboot and spring security
SexyBeast233/SecDictionary
实战沉淀字典
wh1t3p1g/ysomap
A helpful Java Deserialization exploit framework.
INotGreen/XiebroC2
渗透测试C2、支持Lua插件扩展、域前置/CDN上线、自定义profile、前置sRDI、文件管理、进程管理、内存加载、截图、反向代理、分组管理
cckuailong/JNDI-Injection-Exploit-Plus
80+ Gadgets(30 More than ysoserial). JNDI-Injection-Exploit-Plus is a tool for generating workable JNDI links and provide background services by starting RMI server,LDAP server and HTTP server.
wyzxxz/aksk_tool
AK资源管理工具,阿里云/腾讯云/华为云/AWS/UCLOUD/京东云/百度云/七牛云存储 AccessKey AccessKeySecret,利用AK获取资源信息和操作资源,ECS/CVM/E2/UHOST/ECI/BCC执行命令,OSS/COS/S3/BOS管理,RDS/DB管理,域名管理,添加RAM/CAM/IAM账号等
waderwu/extractor-java
CodeQL extractor for java, which don't need to compile java source
kezibei/Urldns
jvm-rasp/jrasp-agent
专注于JVM的运行时防御系统RASP
mschwager/route-detect
Find authentication (authn) and authorization (authz) security bugs in web application routes.
synacktiv/php_filter_chains_oracle_exploit
A CLI to exploit parameters vulnerable to PHP filter chain error based oracle.
Dliv3/DomainBorrowing
Domain Borrowing PoC
luelueking/Deserial_Sink_With_JDBC
Some ReadObject Sink With JDBC
ctfhub-team/challenge_generate
向导式CTF题目环境模板生成器
Ovi3/extract-react-router
Extract React router info from React based website within browser
ctfhub-team/base_image
CTFHub公开的环境基础镜像
chenlvtang/TinyRASP
针对Java Web的RASP(Runtime application self-protection )漏洞防护系统。
rkraper339/CVE-2024-21411-POC
CVE-2024-21411 POC Skype for Consumer Remote Code Execution Vulnerability (RCE)
DASCTF-Base/Web-Tomcat8-Mysql
Toncat8 + MYSQL5.7 基础环境
loverfang/ms-mcms-source