anquanscan's starred repositories

ripgrep

ripgrep recursively searches directories for a regex pattern while respecting your gitignore

Language:RustLicense:UnlicenseStargazers:46626Issues:295Issues:1602

CyberChef

The Cyber Swiss Army Knife - a web app for encryption, encoding, compression and data analysis

Language:JavaScriptLicense:Apache-2.0Stargazers:27527Issues:383Issues:948

nuclei

Fast and customizable vulnerability scanner based on simple YAML based DSL.

personal-security-checklist

🔒 A compiled checklist of 300+ tips for protecting digital security and privacy in 2024

Language:TypeScriptLicense:NOASSERTIONStargazers:16418Issues:213Issues:80

katana

A next-generation crawling and spidering framework.

nuclei-templates

Community curated list of templates for the nuclei engine to find security vulnerabilities.

Language:JavaScriptLicense:MITStargazers:8728Issues:201Issues:1455

SharpWxDump

微信客户端取证,可获取用户个人信息(昵称/账号/手机/邮箱/数据库密钥(用来解密聊天记录));支持获取多用户信息,不定期更新新版本偏移,目前支持所有新版本、正式版本

interactsh

An OOB interaction gathering server and client library

EHole

EHole(棱洞)3.0 重构版-红队重点攻击系统指纹探测工具

Language:GoLicense:Apache-2.0Stargazers:3017Issues:41Issues:76

Elkeid

Elkeid is an open source solution that can meet the security requirements of various workloads such as hosts, containers and K8s, and serverless. It is derived from ByteDance's internal best practices.

0day

各种CMS、各种平台、各种系统、各种软件漏洞的EXP、POC ,该项目将持续更新

Language:CLicense:GPL-3.0Stargazers:1970Issues:62Issues:5

TscanCode

A static code analyzer for C++, C#, Lua

Language:C++License:NOASSERTIONStargazers:1954Issues:127Issues:78

linglong

一款甲方资产巡航扫描系统。系统定位是发现资产,进行端口爆破。帮助企业更快发现弱口令问题。主要功能包括: 资产探测、端口爆破、定时任务、管理后台识别、报表展示

SELKS

A Suricata based IDS/IPS/NSM distro

Language:ShellLicense:GPL-3.0Stargazers:1385Issues:98Issues:402

WeChatExporter

一个可以快速导出、查看你的微信聊天记录的工具

Language:JavaScriptLicense:GPL-3.0Stargazers:1373Issues:37Issues:37

GoWxDump

SharpWxDump的Go语言版。微信客户端取证,获取信息(微信号、手机号、昵称),微信聊天记录分析(Top N聊天的人、统计聊天最频繁的好友排行、关键词列表搜索等)

Language:GoLicense:GPL-3.0Stargazers:1361Issues:22Issues:31

dumpall

一款信息泄漏利用工具,适用于.git/.svn/.DS_Store泄漏和目录列出

Language:PythonLicense:MITStargazers:1299Issues:17Issues:20

wordlists

Automated & Manual Wordlists provided by Assetnote

Language:CSSLicense:Apache-2.0Stargazers:1243Issues:26Issues:4

PocOrExp_in_Github

聚合Github上已有的Poc或者Exp,CVE信息来自CVE官网。Auto Collect Poc Or Exp from Github by CVE ID.

Language:PythonLicense:MITStargazers:887Issues:43Issues:4

nessus

nessus crack for docker

Antenna

Antenna是58同城安全团队打造的一款辅助安全从业人员验证网络中多种漏洞是否存在以及可利用性的工具。其基于带外应用安全测试(OAST)通过任务的形式,将不同漏洞场景检测能力通过插件的形式进行集合,通过与目标进行out-bind的数据通信方式进行辅助检测。

Language:JavaScriptLicense:Apache-2.0Stargazers:716Issues:12Issues:29

evil_minio

EXP for CVE-2023-28434 MinIO unauthorized to RCE

Language:GoLicense:AGPL-3.0Stargazers:294Issues:3Issues:6

menuet

Go library to create menubar apps- programs that live only in OSX's NSStatusBar

Language:GoLicense:MITStargazers:271Issues:7Issues:19

myscan

构建信息搜集/漏洞扫描

vulcat

vulcat可用于扫描Web端常见的CVE、CNVD等编号的漏洞,发现漏洞时会返回Payload信息。部分漏洞还支持命令行交互模式,可以持续利用漏洞

Language:PythonLicense:GPL-3.0Stargazers:108Issues:5Issues:5

BLEN

漏洞批量验证框架

Language:PythonLicense:GPL-3.0Stargazers:86Issues:8Issues:2

fofa_cnvd

通过公司名称,在fofa上搜索可能存在通用产品的公司;如果想挖掘cnvd证书,可在AI企查等平台上导出注册资金大于5000w的公司到这个脚本中进行通用系统收集。

Language:PythonStargazers:12Issues:0Issues:0