b1gw00d's repositories
Active-Directory-Exploitation-Cheat-Sheet
A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.
Information_Security_Books
150本信息安全方面的书籍书籍(持续更新)
smart-contract-attack-vectors
A collection of smart contract attack vectors along with prevention methods.
ApolloScanner
自动化巡航扫描框架(可用于红队打点评估)
ARL
ARL官方仓库备份项目:ARL(Asset Reconnaissance Lighthouse)资产侦察灯塔系统旨在快速侦察与目标关联的互联网资产,构建基础资产信息库。 协助甲方安全团队或者渗透测试人员有效侦察和检索资产,发现存在的薄弱点和攻击面。
Awesome-Web3-security
A curated list of resources for learning web3 hacking/Security
BREAK
业务风险枚举与规避知识(Business Risk Enumeration & Avoidance Kownledge)
disposable-email-domains
a list of disposable and temporary email address domains
disposable-email-domains-1
Daily updated repository for https://github.com/disposable/disposable
domainNamePredictor
一个简单的现代化公司域名使用规律预测及生成工具
garss
Github Actions采集RSS, 打造无广告内容优质的头版头条超赞宝藏页
learn-evm-attacks
Learn & Contribute on previously exploited vulnerabilities across several EVM projects.
media-source-extract
MediaSource 视频提取教程
msmap
Msmap is a Memory WebShell Generator.
nuclei
Fast and customizable vulnerability scanner based on simple YAML based DSL.
OneListForAll
Rockyou for web fuzzing
PentestDB
各种数据库的利用姿势
secureum-mind_map
This repo is less actively maintained now but I still monitor it for PR's.
security_content
Splunk Security Content
smartcontract-apps
这是一个面向中文社区,分析市面上智能合约应用的架构与实现的仓库。
solidity-fuzzing-comparison
A comparison of solidity fuzzing tools Foundry, Echidna & Medusa
threat-broadcast
威胁情报播报
vanity-eth
⚡ Browser-based ETH vanity address generator
verified-smart-contracts
Smart contracts which are formally verified
WTF-Solidity
我最近在重新学solidity,巩固一下细节,也写一个“WTF Solidity极简入门”,供小白们使用,每周更新1-3讲。官网: https://wtf.academy