Nazicc's starred repositories

evil-winrm

The ultimate WinRM shell for hacking/pentesting

Language:RubyLicense:LGPL-3.0Stargazers:4247Issues:77Issues:0

sensitive-word

👮‍♂️The sensitive word tool for java.(敏感词/违禁词/违法词/脏词。基于 DFA 算法实现的高性能 java 敏感词过滤工具框架。请勿发布涉及政治、广告、营销、翻墙、违反国家法律法规等内容。高性能敏感词检测过滤组件,附带繁体简体互换,支持全角半角互换,汉字转拼音,模糊搜索等功能。)

Language:JavaLicense:Apache-2.0Stargazers:3627Issues:27Issues:55

clash-rev

Continuation of Clash core project

python-whydo

Explore Python's charms by asking WHY questions

Heimdallr

一款完全被动监听的谷歌插件,用于高危指纹识别、蜜罐特征告警和拦截、机器特征对抗

Language:JavaScriptLicense:GPL-2.0Stargazers:1303Issues:12Issues:12

joy

A package for capturing and analyzing network flow data and intraflow data, for network research, forensics, and security monitoring.

Language:CLicense:NOASSERTIONStargazers:1283Issues:113Issues:86

CORScanner

🎯 Fast CORS misconfiguration vulnerabilities scanner

Language:PythonLicense:MITStargazers:987Issues:21Issues:17

Glass

Glass是一款针对资产列表的快速指纹识别工具,通过调用Fofa/ZoomEye/Shodan/360等api接口快速查询资产信息并识别重点资产的指纹,也可针对IP/IP段或资产列表进行快速的指纹识别。

TscanPlus

一款综合性网络安全检测和运维工具,旨在快速资产发现、识别、检测,构建基础资产信息库,协助甲方安全团队或者安全运维人员有效侦察和检索资产,发现存在的薄弱点和攻击面。

security-paper

(与本人兴趣强相关的)各种安全or计算机资料收集

Language:PythonLicense:MITStargazers:704Issues:26Issues:0

TerraformGoat

TerraformGoat is HXSecurity research lab's "Vulnerable by Design" multi cloud deployment tool.

Language:HCLLicense:Apache-2.0Stargazers:505Issues:8Issues:8

Jie

Jie stands out as a comprehensive security assessment and exploitation tool meticulously crafted for web applications. Its robust suite of features encompasses vulnerability scanning, information gathering, and exploitation, elevating it to an indispensable toolkit for both security professionals and penetration testers.(expectations)

Language:GoLicense:AGPL-3.0Stargazers:501Issues:11Issues:27

FastJsonParty

FastJson全版本Docker漏洞环境(涵盖1.2.47/1.2.68/1.2.80等版本),主要包括JNDI注入及高版本绕过、waf绕过、文件读写、原生反序列化、利用链探测绕过、不出网利用等。从黑盒的角度覆盖FastJson深入利用

SiteScan

专注一站化解决渗透测试的信息收集任务,功能包括域名ip历史解析、nmap常见端口爆破、子域名信息收集、旁站信息收集、whois信息收集、网站架构分析、cms解析、备案信息收集、CDN信息解析、是否存在waf检测、后台寻找以及生成检测结果html报告表。

Language:PythonLicense:BSD-3-ClauseStargazers:379Issues:5Issues:9

AWD-Guide

从零学习AWD比赛指导手册以及AWD脚本整理

Language:PythonLicense:GPL-3.0Stargazers:319Issues:3Issues:1

40k-nuclei-templates

40,000+ Nuclei templates for security scanning and detection across diverse web applications and services

ActiveMqRCE

用java实现构造openwire协议,利用activeMQ < 5.18.3 RCE 回显利用 内存马注入

SqliSniper

Advanced Time-based Blind SQL Injection fuzzer for HTTP Headers

Language:PythonLicense:MITStargazers:211Issues:3Issues:1

EmailSender

钓鱼邮件便捷发送工具(GUI)

Frchannel

帆软bi反序列化漏洞利用工具

PacketSpy

PacketSpy

Language:PythonLicense:MITStargazers:120Issues:4Issues:0

Android-Pentesting-Checklist

Delve into a comprehensive checklist, your ultimate companion for Android app penetration testing. Identify vulnerabilities in network, data, storage, and permissions effortlessly. Boost security skills with essential tools and user-friendly guides. Elevate Android security seamlessly!

Raster-Terminator

CTF之光栅图秒杀器

Language:PythonLicense:GPL-3.0Stargazers:87Issues:2Issues:0

cscan-go

cscan-go 版本,主要用于C段扫描,信息收集、红队横向渗透等...(相信我,点进来不会后悔的!)

Language:GoLicense:MITStargazers:72Issues:3Issues:2

Vps_tracke

Vps_tracker一款攻防演练中快速定位红队资产工具

Language:PythonStargazers:19Issues:1Issues:0

fastbt

以蓝队为核心针对红队web指纹识别

Language:PythonStargazers:13Issues:0Issues:0

Vulnerability-Wiki

一个综合漏洞知识库,集成了Vulhub、Peiqi、Edge、0sec、Wooyun等开源漏洞库

Language:HTMLStargazers:7Issues:0Issues:0

NetSecurity

网络安全训练营全部资料,包括 Web 安全、网络安全、信息安全、系统防护、供方渗透、云安全

Language:HTMLStargazers:4Issues:0Issues:0