k1ea4c's starred repositories

scan4all

Official repository vuls Scan: 15000+PoCs; 23 kinds of application password crack; 7000+Web fingerprints; 146 protocols and 90000+ rules Port scanning; Fuzz, HW, awesome BugBounty( ͡° ͜ʖ ͡°)...

Language:GoLicense:BSD-3-ClauseStargazers:5528Issues:65Issues:107

kscan

Kscan是一款纯go开发的全方位扫描器,具备端口扫描、协议检测、指纹识别,暴力破解等功能。支持协议1200+,协议指纹10000+,应用指纹20000+,暴力破解协议10余种。

Language:GoLicense:GPL-3.0Stargazers:3933Issues:44Issues:145

Stowaway

👻Stowaway -- Multi-hop Proxy Tool for pentesters

Language:GoLicense:MITStargazers:2793Issues:38Issues:57

fuso

一款体积小, 快速, 稳定, 高效, 轻量的内网穿透, 端口转发工具 支持多连接,级联代理,传输加密 (A small volume, fast, stable, efficient, and lightweight intranet penetration, port forwarding tool supports multiple connections, cascading proxy, and transmission encryption)

Language:RustLicense:GPL-3.0Stargazers:1815Issues:22Issues:39

JNDIExploit

对原版https://github.com/feihong-cs/JNDIExploit 进行了实用化修改

ysomap

A helpful Java Deserialization exploit framework.

Language:JavaLicense:Apache-2.0Stargazers:1180Issues:28Issues:16

Fiora

Fiora:漏洞PoC框架Nuclei的图形版。快捷搜索PoC、一键运行Nuclei。即可作为独立程序运行,也可作为burp插件使用。

PSSW100AVB

A list of useful Powershell scripts with 100% AV bypass (At the time of publication).

ksubdomain

Subdomain enumeration tool, asynchronous dns packets, use pcap to scan 1600,000 subdomains in 1 second

Language:GoLicense:MITStargazers:884Issues:14Issues:39

SpoolFool

Exploit for CVE-2022-21999 - Windows Print Spooler Elevation of Privilege Vulnerability (LPE)

Language:C#License:MITStargazers:773Issues:15Issues:10

rogue_mysql_server

A rouge mysql server supports reading files from most mysql libraries of multiple programming languages.

Language:GoLicense:MITStargazers:699Issues:6Issues:11

GBByPass

冰蝎 哥斯拉 WebShell bypass

LinuxTQ

《Linux提权方法论》

FofaMap

FofaMap是一款基于Python3开发的跨平台FOFA API数据采集器,支持普通查询、网站存活检测、统计聚合查询、Host聚合查询、网站图标查询、批量查询等查询功能。同时FofaMap还能够自定义查询FOFA数据,并根据查询结果自动去重和筛选关键字,生成对应的Excel表格。另外春节特别版还可以调用Nuclei对FofaMap查询出来的目标进行漏洞扫描,让你在挖洞路上快人一步。

Language:PythonLicense:Apache-2.0Stargazers:496Issues:11Issues:33

SharpBypassUAC

C# tool for UAC bypasses

Language:C#License:MITStargazers:411Issues:10Issues:2

Adinfo

域信息收集工具

AwesomeScript

AntSword Shell 脚本分享/示例

ScheduleRunner

A C# tool with more flexibility to customize scheduled task for both persistence and lateral movement in red team operation

Language:C#Stargazers:323Issues:4Issues:0

codeql_compile

自动反编译闭源应用,创建codeql数据库

JustC2file

Burp插件,Malleable C2 Profiles生成器;可以通过Burp代理选中请求,生成Cobalt Strike的profile文件(CSprofile)

DnslogCmdEcho

命令执行不回显但DNS协议出网的命令回显场景解决方案

RMI_Inj_MemShell

rmi打内存马工具,适用于目标用不了ldap的情况

AwesomeEncoder

AntSword 自定义编(解)码器分享

DropLabTools

一个垃圾利用工具,半自动发包机器

MoreFind

一款用于快速导出URL、Domain和IP的小工具

SchtaskCreator

远程创建任务计划工具

DruidCrack

Druid 密文解密工具

Language:JavaStargazers:130Issues:2Issues:0

GetMail

利用NTLM Hash读取Exchange邮件

Language:PythonLicense:MITStargazers:63Issues:1Issues:0