Pinned Repositories
afl-training
Exercises to learn how to fuzz with American Fuzzy Lop
AFLplusplus
The fuzzer afl++ is afl with community patches, qemu 5.1 upgrade, collision-free coverage, enhanced laf-intel & redqueen, AFLfast++ power schedules, MOpt mutators, unicorn_mode, and a lot more!
ANGRYORCHARD
A kernel exploit leveraging NtUserHardErrorControl to elevate a thread to KernelMode and achieve arbitrary kernel R/W & more.
APT-Hunter
APT-Hunter is Threat Hunting tool for windows event logs which made by purple team mindset to provide detect APT movements hidden in the sea of windows event logs to decrease the time to uncover suspicious activity
Awesome-Advanced-Windows-Exploitation-References
List of Awesome Advanced Windows Exploitation References
awesome-forensics
Awesome Forensics Resources. Almost 300 open source forensics tools, and 600 blog posts about forensics.
bugbounty
Bugbounty Resources
BugId
Detect, analyze and uniquely identify crashes in Windows applications
Business-Email-Compromise-Guide
The Business Email Compromise Guide sets out to describe 10 steps for performing a Business Email Compromise (BEC) investigation in an Office 365 environment. Each step is intended to guide the process of identifying, collecting and analysing activity associated with BEC intrusions.
CerToDomain
根据证书报错信息跑域名
zc00l's Repositories
zc00l/afl-training
Exercises to learn how to fuzz with American Fuzzy Lop
zc00l/AFLplusplus
The fuzzer afl++ is afl with community patches, qemu 5.1 upgrade, collision-free coverage, enhanced laf-intel & redqueen, AFLfast++ power schedules, MOpt mutators, unicorn_mode, and a lot more!
zc00l/ANGRYORCHARD
A kernel exploit leveraging NtUserHardErrorControl to elevate a thread to KernelMode and achieve arbitrary kernel R/W & more.
zc00l/APT-Hunter
APT-Hunter is Threat Hunting tool for windows event logs which made by purple team mindset to provide detect APT movements hidden in the sea of windows event logs to decrease the time to uncover suspicious activity
zc00l/Awesome-Advanced-Windows-Exploitation-References
List of Awesome Advanced Windows Exploitation References
zc00l/awesome-forensics
Awesome Forensics Resources. Almost 300 open source forensics tools, and 600 blog posts about forensics.
zc00l/bugbounty
Bugbounty Resources
zc00l/BugId
Detect, analyze and uniquely identify crashes in Windows applications
zc00l/Business-Email-Compromise-Guide
The Business Email Compromise Guide sets out to describe 10 steps for performing a Business Email Compromise (BEC) investigation in an Office 365 environment. Each step is intended to guide the process of identifying, collecting and analysing activity associated with BEC intrusions.
zc00l/CerToDomain
根据证书报错信息跑域名
zc00l/container-security-checklist
Checklist for container security - devsecops practices
zc00l/DNSEnum
A Subdomain Enumeration Script Designed for Pentesting Reconnaissance
zc00l/EyeWitness
EyeWitness is designed to take screenshots of websites, provide some server header info, and identify default credentials if possible.
zc00l/Findomain
The complete solution for domain recognition. Supports screenshoting, port scan, HTTP check, data import from other tools, subdomain monitoring, alerts via Discord, Slack and Telegram, multiple API Keys for sources and much more.
zc00l/Freeze
Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods
zc00l/frogy
My subdomain enumeration script. It's unique in the way it is built upon.
zc00l/gittest
zc00l/google-10000-english
This repo contains a list of the 10,000 most common English words in order of frequency, as determined by n-gram frequency analysis of the Google's Trillion Word Corpus.
zc00l/JSFinder
JSFinder is a tool for quickly extracting URLs and subdomains from JS files on a website.
zc00l/karma_v2
⡷⠂𝚔𝚊𝚛𝚖𝚊 𝚟𝟸⠐⢾ is a Passive Open Source Intelligence (OSINT) Automated Reconnaissance (framework)
zc00l/lighthouse
A Coverage Explorer for Reverse Engineers
zc00l/Micro8
Gitbook
zc00l/Papers
Some papers about cyber security
zc00l/retoolkit
Reverse Engineer's Toolkit
zc00l/Security_Code
个人安全开发代码汇总:包括但不限于渗透测试,资产收集,大规模漏洞扫描器,网络安全相关资料文档
zc00l/sicat
The useful exploit finder
zc00l/sliver
Adversary Emulation Framework
zc00l/src
日常src平台域名收集
zc00l/SubSeven
SubSeven Legacy Official Source Code Repository
zc00l/v8
The official mirror of the V8 Git repository