hihihimimimi's repositories
ant
实时上线的 XSS 盲打平台
antSword
AntSword is a cross-platform website management toolkit.
AwesomeEncoder
AntSword 自定义编(解)码器分享
AwesomeScript
AntSword Shell 脚本分享/示例
BypassAntiVirus
远控免杀系列文章及配套工具,搜集汇总了互联网上的几十种免杀工具和免杀方法,并对免杀效果进行了一一测试,为远控的免杀和杀软对抗免杀提供参考。
cafecompare
Java code comparison tool (jar / class)
CVE-2020-10199_CVE-2020-10204
CVE-2020-10199、CVE-2020-10204漏洞一键检测工具,图形化界面。CVE-2020-10199 and CVE-2020-10204 Vul Tool with GUI.
exploit
My exploitDB.
Fake-flash.cn
www.flash.cn 的钓鱼页,中文+英文
fastjson
A fast JSON parser/generator for Java.
github-email
Get a GitHub user's email. All sneaky-like. :sunglasses:
harvest
Bread for the people!
iplist
:book: IP CIDRs List / IP 地址列表,每月更新
JSFinder
JSFinder is a tool for quickly extracting URLs and subdomains from JS files on a website.
learnjavabug
Java安全相关的漏洞和技术demo,原生Java、Fastjson、Jackson、Hessian2、XML反序列化漏洞利用和Spring、Dubbo、Shiro、CAS、Tomcat、RMI等框架\中间件\功能的exploits以及Java Security Manager绕过、Dubbo-Hessian2安全加固等等实践代码。
Liferay-CE-Portal-Java-Deserialization
This repo contains PoC for the remote code execution vulnerability of Liferay CE Portal!
metasploit-framework
Metasploit Framework
Middleware-Vulnerability-detection
CVE、CMS、中间件漏洞检测利用合集 Since 2019-9-15
OneForAll
OneForAll是一款功能强大的子域收集工具
Penetration_Testing_Case
用于记录分享一些有趣的案例
PrintSpoofer
Abusing Impersonation Privileges on Windows 10 and Server 2019
ShiroScan
Shiro<=1.2.4反序列化,一键检测工具
SpringBootVulExploit
SpringBoot 相关漏洞学习资料,利用方法和技巧合集,黑盒安全评估 checklist
theHarvester
E-mails, subdomains and names Harvester - OSINT
vulhub
Pre-Built Vulnerable Environments Based on Docker-Compose
wfuzz
Web application fuzzer
ysoserial
A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.