libaizaishuijiao's repositories
BehinderClientSource
❄️冰蝎客户端源码-V4.0.6🔞
CVE-2022-21971
PoC for CVE-2022-21971 "Windows Runtime Remote Code Execution Vulnerability"
CVE-2022-39197
CobaltStrike <= 4.7.1 RCE
FreeFRP
通过fofa、hunter、shadon导出frp服务器地址,找出未设置密码的frp服务器(白嫖)
fuso
一款快速, 稳定, 高效, 轻量的内网穿透, 端口转发工具
garble-fork
*fork* of https://github.com/burrowers/garble
go-shellcode-loader
GO免杀shellcode加载器混淆AES加密
JSPHorse
结合反射调用、动态编译、BCEL、defineClass0,ScriptEngine、Expression等技术的一款免杀JSP Webshell生成工具
noELF
Linux下用于远程加载可执行文件以达到内存加载的目的
presshell
🚪 Quick & dirty Wordpress Command Execution Shell
ProtectMyTooling
Multi-Packer wrapper letting us daisy-chain various packers, obfuscators and other Red Team oriented weaponry. Featured with artifacts watermarking, IOCs collection & PE Backdooring. You feed it with your implant, it does a lot of sneaky things and spits out obfuscated executable.
RdViewer
一款支持自建服务器的免费远控神器
RequestTemplate
双语双端内网扫描以及验证工具
scaninfo
fast scan for redtools
SharpWxDump
微信客户端取证,可获取用户个人信息(昵称/账号/手机/邮箱/数据库密钥(用来解密聊天记录));支持获取多用户信息,不定期更新新版本偏移,目前支持所有新版本、正式版本
ShellcodeLoader
该项目为Shellocde加载器,详细介绍了我们如何绕过防病毒软件,以及该工具如何使用
ShiroAttack2
shiro反序列化漏洞综合利用,包含(回显执行命令/注入内存马)修复原版中NoCC的问题 https://github.com/j1anFen/shiro_attack
sl0ppy-defender-evasion
evasion of defender
sshdHooker
一键注入SSHD进程记录并发送ssh登录的密码
SuperRDP
Super RDPWrap
traitor
:arrow_up: :skull_and_crossbones: :fire: Automatic Linux privesc via exploitation of low-hanging fruit e.g. gtfobins, pwnkit, dirty pipe, +w docker.sock
vcenter_saml_login
A tool to extract the IdP cert from vCenter backups and log in as Administrator
wabt
The WebAssembly Binary Toolkit
webapp-wordlists
This repository contains wordlists for each versions of common web applications and content management systems (CMS). Each version contains a wordlist of all the files directories for this version.
wechat-export
获取微信聊天记录数据库密钥并导出聊天记录,各版本通用。
wsMemShell
一种全新的内存马
ZheTian
ZheTian 免杀shellcode执行程序