ObSo6's starred repositories

juice-shop

OWASP Juice Shop: Probably the most modern and sophisticated insecure web application

Language:TypeScriptLicense:MITStargazers:10463Issues:161Issues:822

BloodHound

Six Degrees of Domain Admin

Language:PowerShellLicense:GPL-3.0Stargazers:9893Issues:378Issues:510

GitMiner

Tool for advanced mining for content on Github

Language:PythonLicense:GPL-3.0Stargazers:2092Issues:108Issues:21

gogo

面向红队的, 高度可控可拓展的自动化引擎

Language:GoLicense:GPL-3.0Stargazers:1474Issues:27Issues:57

QCSuper

QCSuper is a tool communicating with Qualcomm-based phones and modems, allowing to capture raw 2G/3G/4G radio frames, among other things.

Language:PythonLicense:GPL-3.0Stargazers:1369Issues:56Issues:113

Binary-Learning

二进制安全相关的学习笔记,感谢滴水逆向的所有老师辛苦教学。

dddd

dddd是一款使用简单的批量信息收集,供应链漏洞探测工具,旨在优化红队工作流,减少伤肝的机械性操作。支持从Hunter、Fofa批量拉取目标

Language:GoLicense:MITStargazers:1103Issues:23Issues:89

Florida

基础反检测 frida-server / Basic anti-detection frida-server

Spring_All_Reachable

Spring漏洞综合利用工具

--Java

代码审计知识点整理-Java

lc

LC(List Cloud)是一个多云攻击面资产梳理工具

Language:GoLicense:MITStargazers:502Issues:6Issues:1

CS-AutoPostChain

基于 OPSEC 的 CobaltStrike 后渗透自动化链

osmocom-bb

Mobile Statuion side GSM implementation; mirrored from https://gitea.osmocom.org/phone-side/osmocom-bb

Language:CStargazers:294Issues:45Issues:0

2024-PocLib

此项目的POC来源为2024年以来各大威胁情报的高危漏洞复现,POC已通过nuclei或xray武器化,本项目旨在为网络安全爱好者们提供一点参考资料,可供个人研究使用,共勉

Language:PythonStargazers:232Issues:6Issues:0

CTF-Java-Gadget

CTF-Java-Gadget专注于收集CTF中Java赛题的反序列化片段

Language:JavaStargazers:203Issues:5Issues:0

BypassAV

一款基于PE Patch技术的后渗透免杀工具,支持32位和64位

LazyAnFuZai

安服吗喽化工具

pineapple-ar150

WiFi Pineapple firmware for the GL.iNet GL-AR150

Lscan

一款内网快速打点的辅助性扫描工具,方便红队人员在内网横向移动前期的信息搜集、漏洞探测利用环节的工作开展。其工具特性主要为支持一键化三个档位的便捷式信息与漏洞扫描或每个功能模块单独式扫描探测功能。

Language:GoStargazers:86Issues:3Issues:0

e0e1-cnvd

cnvd 范围扩展收集工具

e0e1-abroad

e0e1-abroad 国外项目范围收集

Language:PythonStargazers:26Issues:1Issues:0

ChameleonMiniApp

ChameleonMini Android Client

Language:DartLicense:GPL-3.0Stargazers:24Issues:2Issues:14

USBKeylogger

Hardware-Based Keylogger

Language:CLicense:GPL-3.0Stargazers:21Issues:2Issues:0

PEIconHasher

原地修改PE文件ICON hash的小工具,用作免杀

Language:GoLicense:MITStargazers:14Issues:1Issues:0

MonkeyApp

monkey app - 在Mac状态栏显示蓝队吗喽们的下班倒计时

cnvd_fofa_assets

通过爱企查和FOFA接口获取注册资本大于5000w公司的公网通用系统,方便获得CNVD证书 在搜索公网资产数量的基础上增加使用fid参数查询,结果更精准

Language:PythonStargazers:8Issues:0Issues:0

ChameleonProxgrindAndroid-FullDisclosure

BugTraq^H^H^H^H^H^H^H report // Then said our app is shitty and a malware. She threaten us with bugtraq. // https://github.com/emsec/ChameleonMini/issues/218

Language:JavaStargazers:8Issues:3Issues:0

Responder

Responder is a LLMNR and NBT-NS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv2/LMv2, Extended Security NTLMSSP and Basic HTTP authentication.

Language:PythonStargazers:5Issues:4Issues:0