Trần Nguyễn Bảo Khanh's starred repositories

PHPSerialize-labs

【Hello CTF】PHPSerialize-labs是一个使用php语言编写的,用于学习CTF中PHP反序列化的入门靶场。旨在帮助大家对PHP的序列化和反序列化有一个全面的了解。

Language:PHPLicense:GPL-3.0Stargazers:75Issues:0Issues:0

awesome-nodejs-security

Awesome Node.js Security resources

Stargazers:2667Issues:0Issues:0

web-fuzz-wordlists

Common Web Managers Fuzz Wordlists

License:MITStargazers:169Issues:0Issues:0

SpringBootVulExploit

SpringBoot 相关漏洞学习资料,利用方法和技巧合集,黑盒安全评估 check list

Language:JavaStargazers:5635Issues:0Issues:0

ysoserial

ysoserial 图形化,探测 gadget,命令执行,注入哥斯拉冰蝎内存马,加载字节码等

Stargazers:49Issues:0Issues:0

JS2PDFInjector

Inject a JS file into a PDF file.

Language:JavaLicense:Apache-2.0Stargazers:277Issues:0Issues:0

ctf-archives

CTF Archives: Collection of CTF Challenges.

Language:PythonLicense:MITStargazers:729Issues:0Issues:0

CVE-2020-28032_PoC

PoC for CVE-2020-28032 (It's just a POP chain in WordPress < 5.5.2 for exploiting PHP Object Injection)

Language:PHPStargazers:4Issues:0Issues:0

CVE-2024-34102

POC for CVE-2024-34102 : Unauthenticated Magento XXE and bypassing WAF , You will get http connection on ur webhook

Stargazers:2Issues:0Issues:0

PayloadsAllThePDFs

PDF Files for Pentesting

License:Apache-2.0Stargazers:361Issues:0Issues:0

yaml-payload

A tiny project for generating SnakeYAML deserialization payloads

Language:JavaStargazers:533Issues:0Issues:0

CVE-2022-22978-PoC

PoC of CVE-2022-22978 vulnerability in Spring Security framework

Language:JavaStargazers:12Issues:0Issues:0

google-dorks

Useful Google Dorks for WebSecurity and Bug Bounty

Stargazers:878Issues:0Issues:0
License:MITStargazers:584Issues:0Issues:0

ScopeSentry

ScopeSentry-网络空间测绘、子域名枚举、端口扫描、敏感信息发现、漏洞扫描、分布式节点

Language:PythonStargazers:487Issues:0Issues:0

ffuf

Fast web fuzzer written in Go

Language:GoLicense:MITStargazers:11870Issues:0Issues:0

actuator-testbed

A vulnerable application exposing Spring Boot Actuators

Language:JavaStargazers:124Issues:0Issues:0

pdfjs-vuln-demo

This project is intended to serve as a proof of concept to demonstrate exploiting the vulnerability in the PDF.js (pdfjs-dist) library reported in CVE-2024-4367

Language:AstroStargazers:4Issues:0Issues:0

ReverseShell-Java

Generating payloads to reverse shell in different contexts of java.

Language:JavaStargazers:43Issues:0Issues:0

SpringBoot-ImprookCare

Research and Develop Restful APIs for a Health Consultation And Management System (Spring Boot).

Language:JavaStargazers:3Issues:0Issues:0
Language:PHPStargazers:2Issues:0Issues:0

laravel-poc-CVE-2018-15133

PoC for CVE-2018-15133 (Laravel unserialize vulnerability)

Language:DockerfileStargazers:248Issues:0Issues:0

CVE-2024-4577

POC & $BASH script for CVE-2024-4577

Language:ShellStargazers:37Issues:0Issues:0

LearnJavaMemshellFromZero

【三万字原创】完全零基础从0到1掌握Java内存马,公众号:追梦信安

Stargazers:633Issues:0Issues:0

dirsearch

Web path scanner

Language:PythonStargazers:11580Issues:0Issues:0

JSFinder

JSFinder is a tool for quickly extracting URLs and subdomains from JS files on a website.

Language:PythonStargazers:2519Issues:0Issues:0

CVE-2024-32113

Apache OFBIZ Path traversal leading to RCE POC[CVE-2024-32113 & CVE-2024-36104]

License:MITStargazers:20Issues:0Issues:0

aws-enumerator

The AWS Enumerator was created for service enumeration and info dumping for investigations of penetration testers during Black-Box testing. The tool is intended to speed up the process of Cloud review in case the security researcher compromised AWS Account Credentials.

Language:GoLicense:GPL-3.0Stargazers:161Issues:0Issues:0

java-echo-generator

一款支持高度自定义的 Java 回显载荷生成工具|A highly customizable Java echo payload generation tool.

Language:JavaStargazers:357Issues:0Issues:0
Language:PythonStargazers:22Issues:0Issues:0