章鱼哥's starred repositories

go-zero

A cloud-native Go microservices framework with cli tool for productivity.

fscan

一款内网综合扫描工具,方便一键自动化、全方位漏扫扫描。

fuzzDicts

Web Pentesting Fuzz 字典,一个就够了。

K8tools

K8工具合集(内网渗透/提权工具/远程溢出/漏洞利用/扫描工具/密码破解/免杀工具/Exploit/APT/0day/Shellcode/Payload/priviledge/BypassUAC/OverFlow/WebShell/PenTest) Web GetShell Exploit(Struts2/Zimbra/Weblogic/Tomcat/Apache/Jboss/DotNetNuke/zabbix)

Language:PowerShellLicense:MITStargazers:5727Issues:207Issues:28

Emergency-Response-Notes

应急响应实战笔记,一个安全工程师的自我修养。

Intranet_Penetration_Tips

2018年初整理的一些内网渗透TIPS,后面更新的慢,所以整理出来希望跟小伙伴们一起更新维护~

hackerone-reports

Top disclosed reports from HackerOne

AppInfoScanner

一款适用于以HW行动/红队/渗透测试团队为场景的移动端(Android、iOS、WEB、H5、静态网站)信息收集扫描工具,可以帮助渗透测试工程师、攻击队成员、红队成员快速收集到移动端或者静态WEB站点中关键的资产信息并提供基本的信息输出,如:Title、Domain、CDN、指纹信息、状态信息等。

Language:PythonLicense:GPL-3.0Stargazers:3055Issues:42Issues:42

frida-all-in-one

《FRIDA操作手册》by @hluwa @r0ysue

HaE

HaE - Highlighter and Extractor, Empower ethical hacker for efficient operations.

Language:JavaLicense:Apache-2.0Stargazers:2675Issues:34Issues:193

APTSimulator

A toolset to make a system look as if it was the victim of an APT attack

Language:BatchfileLicense:MITStargazers:2416Issues:120Issues:9

RedTeam_BlueTeam_HW

红蓝对抗以及护网相关工具和资料,内存shellcode(cs+msf)和内存马查杀工具

Language:JavaLicense:MITStargazers:2173Issues:51Issues:5

domain_hunter_pro

domain_hunter的高级版本,SRC挖洞、HW打点之必备!自动化资产收集;快速Title获取;外部工具联动;等等

stratus-red-team

:cloud: :zap: Granular, Actionable Adversary Emulation for the Cloud

Language:GoLicense:Apache-2.0Stargazers:1688Issues:33Issues:174

hackingthe.cloud

An encyclopedia for offensive and defensive security knowledge in cloud native technologies.

Language:DockerfileLicense:NOASSERTIONStargazers:1596Issues:42Issues:78

burpFakeIP

服务端配置错误情况下用于伪造ip地址进行测试的Burp Suite插件

AD-Pentest-Notes

用于记录内网渗透(域渗透)学习 :-)

SaiDict

弱口令,敏感目录,敏感文件等渗透测试常用攻击字典

sec-books-part1

:books: 网安类绝版图书

lc

LC(List Cloud)是一个多云攻击面资产梳理工具

Language:GoLicense:MITStargazers:401Issues:6Issues:1

xssfinder

XSS discovery tool

Language:GoLicense:GPL-3.0Stargazers:200Issues:9Issues:4

dic

渗透字典,框架信息泄露,备份文件泄露,配置文件泄露。字典

Language:PythonStargazers:174Issues:2Issues:0

ARL-Finger-ADD-Go

ARL(灯塔)批量添加指纹

Language:GoLicense:GPL-3.0Stargazers:118Issues:2Issues:2

Sec-Interview

网络安全面试总结

cobaltstrike-suricata-rules

17条检测cobaltstrike的suricata-ids规则

offlinepost

读过的安全文章离线归档 | begin in 2023.11.23

Language:CStargazers:11Issues:2Issues:0

ngflow

次世代流程引擎

Language:C#Stargazers:6Issues:0Issues:0