📦 GitHub 全球红队渗透资源中转站。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
GitHub监控消息提醒!!!
更新了:CVE-2022
描述:Resolving the CVE-2022-22948 vulnerability
URL:https://github.com/kaanymz/vcenter-cve-fix
标签:#CVE-2022
更新了:CVE-2022
描述:Resolving the CVE-2022-22948 vulnerability
URL:https://github.com/kaanymz/vcenter-cve-fix
标签:#CVE-2022
GitHub监控消息提醒!!!
更新了:命令注入
描述:shiro反序列化利用综合利用,包含(回显执行命令/注入内存马)原版中NoCC的问题 https://github.com/j1anFen/shiro_attack
URL:https://github.com/shengshengli/ShiroAttack4.5.3
标签:#命令注入
更新了:命令注入
描述:shiro反序列化利用综合利用,包含(回显执行命令/注入内存马)原版中NoCC的问题 https://github.com/j1anFen/shiro_attack
URL:https://github.com/shengshengli/ShiroAttack4.5.3
标签:#命令注入
GitHub监控消息提醒!!!
更新了:渗透测试
描述:upload-labs是一个使用php语言编写的,专门收集渗透测试和CTF中遇到的各种上传漏洞的靶场。旨在帮助大家对上传漏洞有一个全面的了解。目前一共20关,每一关都包含着不同上传方式。
URL:https://github.com/shengshengli/upload-labs
标签:#渗透测试
更新了:渗透测试
描述:upload-labs是一个使用php语言编写的,专门收集渗透测试和CTF中遇到的各种上传漏洞的靶场。旨在帮助大家对上传漏洞有一个全面的了解。目前一共20关,每一关都包含着不同上传方式。
URL:https://github.com/shengshengli/upload-labs
标签:#渗透测试
GitHub监控消息提醒!!!
更新了:CVE-2022
描述:This repository contains a PoC for remote code execution CVE-2022-26809
URL:https://github.com/ZyxelTeam/CVE-2022-26809-RCE
标签:#CVE-2022
更新了:CVE-2022
描述:This repository contains a PoC for remote code execution CVE-2022-26809
URL:https://github.com/ZyxelTeam/CVE-2022-26809-RCE
标签:#CVE-2022
GitHub监控消息提醒!!!
更新了:CVE-2022
描述:CVE-2022-28508
URL:https://github.com/YavuzSahbaz/CVE-2022-28508
标签:#CVE-2022
更新了:CVE-2022
描述:CVE-2022-28508
URL:https://github.com/YavuzSahbaz/CVE-2022-28508
标签:#CVE-2022
GitHub监控消息提醒!!!
更新了:webshell
描述:A python thing to improve webshell usage
URL:https://github.com/e-seng/webshellify
标签:#webshell
更新了:webshell
描述:A python thing to improve webshell usage
URL:https://github.com/e-seng/webshellify
标签:#webshell
GitHub监控消息提醒!!!
更新了:Cobalt Strike
描述:A work in progress of constructing a minimal http(s) beacon for Cobalt Strike.
URL:https://github.com/surgicalmittens/minbeacon
标签:#Cobalt Strike
更新了:Cobalt Strike
描述:A work in progress of constructing a minimal http(s) beacon for Cobalt Strike.
URL:https://github.com/surgicalmittens/minbeacon
标签:#Cobalt Strike
GitHub监控消息提醒!!!
更新了:CVE-2022
描述:CVE-2022-29464 POC exploit
URL:https://github.com/superzerosec/CVE-2022-29464
标签:#CVE-2022
更新了:CVE-2022
描述:CVE-2022-29464 POC exploit
URL:https://github.com/superzerosec/CVE-2022-29464
标签:#CVE-2022
GitHub监控消息提醒!!!
更新了:反序列化
描述:提供leetcode做题时本机调试代码需要的String转int[]、int[][]、ListNode等反序列化工具。
URL:https://github.com/SennriSyunnga/LeetCodeUtil
标签:#反序列化
更新了:反序列化
描述:提供leetcode做题时本机调试代码需要的String转int[]、int[][]、ListNode等反序列化工具。
URL:https://github.com/SennriSyunnga/LeetCodeUtil
标签:#反序列化
GitHub监控消息提醒!!!
更新了:渗透测试
描述:渗透测试:微信小程序信息在线收集,wxapkg源码包内提取信息
URL:https://github.com/moyuwa/wechat_appinfo_wxapkg
标签:#渗透测试
更新了:渗透测试
描述:渗透测试:微信小程序信息在线收集,wxapkg源码包内提取信息
URL:https://github.com/moyuwa/wechat_appinfo_wxapkg
标签:#渗透测试
GitHub监控消息提醒!!!
更新了:CVE-2022
描述:CVE-2022-28452
URL:https://github.com/YavuzSahbaz/Red-Planet-Laundry-Management-System-1.0-is-vulnerable-to-SQL
标签:#CVE-2022
更新了:CVE-2022
描述:CVE-2022-28452
URL:https://github.com/YavuzSahbaz/Red-Planet-Laundry-Management-System-1.0-is-vulnerable-to-SQL
标签:#CVE-2022
GitHub监控消息提醒!!!
更新了:Red Team
描述:This is a project based on a Red Team - Blue Team Exercise
URL:https://github.com/NetSPI/ESC
标签:#Red Team
更新了:Red Team
描述:This is a project based on a Red Team - Blue Team Exercise
URL:https://github.com/NetSPI/ESC
标签:#Red Team
GitHub监控消息提醒!!!
更新了:代码审计
描述:☕️ Java Security,安全编码和代码审计
URL:https://github.com/j3ers3/Hello-Java-Sec
标签:#代码审计
更新了:代码审计
描述:☕️ Java Security,安全编码和代码审计
URL:https://github.com/j3ers3/Hello-Java-Sec
标签:#代码审计
GitHub监控消息提醒!!!
更新了:绕过
描述:Check broken access control exists in the Java web application. 检查 Java Web 应用程序中是否存在访问控制绕过/授权绕过问题。
URL:https://github.com/kw0ngr/javaEeAccessControlCheck
标签:#绕过
更新了:绕过
描述:Check broken access control exists in the Java web application. 检查 Java Web 应用程序中是否存在访问控制绕过/授权绕过问题。
URL:https://github.com/kw0ngr/javaEeAccessControlCheck
标签:#绕过
GitHub监控消息提醒!!!
更新了:CVE-2022
描述:CVE-2022-28454
URL:https://github.com/YavuzSahbaz/Limbas-4.3.36.1319-is-vulnerable-to-Cross-Site-Scripting-XSS-
标签:#CVE-2022
更新了:CVE-2022
描述:CVE-2022-28454
URL:https://github.com/YavuzSahbaz/Limbas-4.3.36.1319-is-vulnerable-to-Cross-Site-Scripting-XSS-
标签:#CVE-2022
GitHub监控消息提醒!!!
更新了:Cobalt Strike
描述:A work in progress of constructing a minimal http(s) beacon for Cobalt Strike.
URL:https://github.com/SecIdiot/minbeacon
标签:#Cobalt Strike
更新了:Cobalt Strike
描述:A work in progress of constructing a minimal http(s) beacon for Cobalt Strike.
URL:https://github.com/SecIdiot/minbeacon
标签:#Cobalt Strike
GitHub监控消息提醒!!!
更新了:webshell
描述:A simple command line interface for webshells
URL:https://github.com/qtc-de/webshell-cli
标签:#webshell
更新了:webshell
描述:A simple command line interface for webshells
URL:https://github.com/qtc-de/webshell-cli
标签:#webshell
GitHub监控消息提醒!!!
更新了:内网渗透
描述:Nemo是用来进行自动化信息收集的一个简单平台,通过集成常用的信息收集工具和技术,实现对内网及互联网资产信息的自动收集,提高隐患排查和渗透测试的工作效率,用Go语言完全重构了原Python版本。
URL:https://github.com/k8gege/LadonGo
标签:#内网渗透
更新了:内网渗透
描述:Nemo是用来进行自动化信息收集的一个简单平台,通过集成常用的信息收集工具和技术,实现对内网及互联网资产信息的自动收集,提高隐患排查和渗透测试的工作效率,用Go语言完全重构了原Python版本。
URL:https://github.com/k8gege/LadonGo
标签:#内网渗透