h3litz's starred repositories

ctop

Top-like interface for container metrics

playwright-python

Python version of the Playwright testing and automation library.

Language:PythonLicense:Apache-2.0Stargazers:11217Issues:144Issues:1283

xray

一款完善的安全评估工具,支持常见 web 安全问题扫描和自定义 poc | 使用之前务必先阅读文档

Language:VueLicense:NOASSERTIONStargazers:10013Issues:206Issues:448

spider-flow

新一代爬虫平台,以图形化方式定义爬虫流程,不写代码即可完成爬虫。

Language:JavaLicense:MITStargazers:9331Issues:96Issues:42

jvm-sandbox

Real - time non-invasive AOP framework container based on JVM

Language:JavaLicense:LGPL-3.0Stargazers:6692Issues:379Issues:354

SpringBootVulExploit

SpringBoot 相关漏洞学习资料,利用方法和技巧合集,黑盒安全评估 check list

mm-wiki

MM-Wiki 一个轻量级的企业知识分享与团队协同软件,可用于快速构建企业 Wiki 和团队知识分享平台。部署方便,使用简单,帮助团队构建一个信息共享、文档管理的协作环境。

w13scan

Passive Security Scanner (被动式安全扫描器)

Language:SmartyLicense:GPL-2.0Stargazers:1883Issues:50Issues:501

chunked-coding-converter

Burp suite 分块传输辅助插件

Language:JavaLicense:MITStargazers:1880Issues:31Issues:8

ezXSS

ezXSS is an easy way for penetration testers and bug bounty hunters to test (blind) Cross Site Scripting.

Language:PHPLicense:MITStargazers:1824Issues:54Issues:120

CyberSecurityRSS

CyberSecurityRSS: A collection of cybersecurity rss to make you better!

AttackDetection

Attack Detection

python_sec

python安全和代码审计相关资料收集 resource collection of python security and code review

WatchAD

AD Security Intrusion Detection System

Language:PythonLicense:GPL-3.0Stargazers:1284Issues:47Issues:44

MySQL_Fake_Server

MySQL Fake Server use to help MySQL Client File Reading and JDBC Client Java Deserialize

Bypass_Disable_functions_Shell

一个各种方式突破Disable_functions达到命令执行的shell

riskscanner

RiskScanner 是开源的多云安全合规扫描平台,基于 Cloud Custodian 和 Nuclei 引擎,实现对主流公(私)有云资源的安全合规扫描和漏洞扫描。

Language:JavaLicense:GPL-2.0Stargazers:1136Issues:36Issues:22

XSS-Payloads

This repository holds all the list of advanced XSS payloads that can be used in penetration testing. These payloads can be loaded into XSS scanners as well.

glance

🔎 All-in-one Quick Look plugin

Language:SwiftLicense:MITStargazers:951Issues:20Issues:58

top10webseclist

Top Ten Web Hacking Techniques List

Antenna

Antenna是58同城安全团队打造的一款辅助安全从业人员验证网络中多种漏洞是否存在以及可利用性的工具。其基于带外应用安全测试(OAST)通过任务的形式,将不同漏洞场景检测能力通过插件的形式进行集合,通过与目标进行out-bind的数据通信方式进行辅助检测。

Language:JavaScriptLicense:Apache-2.0Stargazers:715Issues:12Issues:29

AES-Killer

Burp Plugin to decrypt AES encrypted traffic on the fly

Language:JavaLicense:MITStargazers:633Issues:25Issues:15

microtar

A lightweight tar library written in ANSI C

article_spider

微信公众号爬虫

burp-unauth-checker

burpsuite extension for check unauthorized vulnerability

Language:PythonLicense:MITStargazers:224Issues:7Issues:1

PTscan

Phantom scanner——An interface friendly and lightweight web assets scanner

PTEye

Phantom eye——A passive business logic vulnerability auditing tool

Language:JavaScriptLicense:MITStargazers:56Issues:2Issues:1