时雨改二's repositories
frida-skeleton
基于frida的安卓hook框架,提供了很多frida自身不支持的功能,将hook安卓变成简单便捷,人人都会的事情
hello-design-pattern
Hello world in GoLang using all 23 kinds of GoF design patterns. Thanks for https://github.com/code4craft/hello-design-pattern
amlogic-s9xxx-openwrt
Support for OpenWrt in Amlogic, Rockchip and Allwinner boxes. Support a311d, s922x, s905x3, s905x2, s912, s905d, s905x, s905w, s905, s905l, rk3588, rk3568, rk3399, rk3328, h6, etc.
APIKit
APIKit:Discovery, Scan and Audit APIs Toolkit All In One.
Apktool
A tool for reverse engineering Android apk files
BurpCollector
通过BurpSuite来构建自己的爆破字典,可以通过字典爆破来发现隐藏资产。通过熵(混乱程度的度量)计算去除无用的数据
BurpFastJsonScan
一款基于BurpSuite的被动式FastJson检测插件
CaA
CaA - Collector and Analyzer, Insight into information, exploring with intelligence in a thousand ways.
CobaltStrike_CNA
使用多种WinAPI进行权限维持的CobaltStrike脚本,包含API设置系统服务,设置计划任务,管理用户等。
CrossC2Kit
CrossC2 developed based on the Cobalt Strike framework can be used for other cross-platform system control. CrossC2Kit provides some interfaces for users to call to manipulate the CrossC2 Beacon session, thereby extending the functionality of Cobalt Strike.
CVE-2021-44228-Scanner
Vulnerability scanner and mitigation patch for Log4j2 CVE-2021-44228
dirsearch
Web path scanner
docker-mysql-elk
mysql sync to ELK example
douban-workflow
Alfred douban workflow
ecapture
Capture SSL/TLS text content without a CA certificate using eBPF. This tool is compatible with Linux/Android x86_64/Aarch64.
fofax
fofax is a command line query tool based on the API of https://fofa.info/, simple is the best!
geacon_pro
跨平台重构了Cobaltstrike Beacon,适配了大部分Beacon的功能,行为对国内主流杀软免杀,支持4.1以上的版本。 A cross-platform CobaltStrike Beacon bypass anti-virus, supports 4.1+ version.
iox
Tool for port forwarding & intranet proxy
learnjavabug
Java安全相关的漏洞和技术demo,原生Java、Fastjson、Jackson、Hessian2、XML反序列化漏洞利用和Spring、Dubbo、Shiro、CAS、Tomcat、RMI、Nexus等框架\中间件\功能的exploits以及Java Security Manager绕过、Dubbo-Hessian2安全加固等等实践代码。
siyuan
A privacy-first, self-hosted, fully open source personal knowledge management software, written in typescript and golang.
SpringBootVulExploit
SpringBoot 相关漏洞学习资料,利用方法和技巧合集,黑盒安全评估 check list
VHostScan
A virtual host scanner that performs reverse lookups, can be used with pivot tools, detect catch-all scenarios, work around wildcards, aliases and dynamic default pages.
WeChatOpenDevTools-Python
WeChatOpenDevTool 微信小程序强制开启开发者工具
ysoserial-for-woodpecker
给woodpecker框架量身定制的ysoserial