Duc Anh Nguyen's repositories
baseplate.go
Reddit's Service Framework in Go
CloudFail
Utilize misconfigured DNS and old database records to find hidden IP's behind the CloudFlare network
cstc
CSTC is a Burp Suite extension that allows request/response modification using a GUI analogous to CyberChef
CTF
Challenges/ sometimes there is a write up in there else its on my blog
CVE-2023-25690-POC
CVE 2023 25690 Proof of concept - mod_proxy vulnerable configuration on Apache HTTP Server versions 2.4.0 - 2.4.55 leads to HTTP Request Smuggling vulnerability.
CVE-2023-2825
GitLab CVE-2023-2825 PoC. This PoC leverages a path traversal vulnerability to retrieve the /etc/passwd file from a system running GitLab 16.0.0.
dirsearch
Web path scanner
dnsrecon
DNS Enumeration Script
frida_setup
One-click installer for Frida and Burp certs for SSL Pinning bypass
gospider
Gospider - Fast web spider written in Go
heckintosh.github.io
Blog.
hugo-blog-awesome
Fast, minimal blog with dark mode support.
interactsh
An OOB interaction gathering server and client library
JNDI-Injection-Exploit-Plus
50+ Gadgets(20 More than ysoserial). JNDI-Injection-Exploit-Plus is a tool for generating workable JNDI links and provide background services by starting RMI server,LDAP server and HTTP server.
JNDIExploit
对原版https://github.com/feihong-cs/JNDIExploit 进行了实用化修改
nessus
nessus crack for docker
nuclei
Fast and customizable vulnerability scanner based on simple YAML based DSL.
portfolYOU
A beautiful portfolio Jekyll theme that works with GitHub Pages.
serpico-templates
Report and finding templates used by the Serpico reporting tool
shuji
Reverse engineering JavaScript and CSS sources from sourcemaps
unwebpack-sourcemap
Extract uncompiled, uncompressed SPA code from Webpack source maps.
webpack-bundle-analyzer
Webpack plugin and CLI utility that represents bundle content as convenient interactive zoomable treemap