mendickxiao's starred repositories

SecLists

SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.

ImHex

🔍 A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM.

Language:C++License:GPL-2.0Stargazers:44590Issues:481Issues:1171

og-aws

📙 Amazon Web Services — a practical guide

Language:ShellLicense:CC-BY-4.0Stargazers:35707Issues:1209Issues:227

nginx

The official NGINX Open Source repository.

Language:CLicense:BSD-2-ClauseStargazers:24873Issues:988Issues:70

harbor

An open source trusted cloud native registry project that stores, signs, and scans content.

Language:GoLicense:Apache-2.0Stargazers:23955Issues:534Issues:11457

sqlitebrowser

Official home of the DB Browser for SQLite (DB4S) project. Previously known as "SQLite Database Browser" and "Database Browser for SQLite". Website at:

Language:C++License:NOASSERTIONStargazers:21168Issues:506Issues:2976

Mobile-Security-Framework-MobSF

Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.

Language:JavaScriptLicense:GPL-3.0Stargazers:17286Issues:576Issues:1486

impacket

Impacket is a collection of Python classes for working with network protocols.

Language:PythonLicense:NOASSERTIONStargazers:13452Issues:375Issues:961

ffuf

Fast web fuzzer written in Go

Sublist3r

Fast subdomains enumeration tool for penetration testers

Language:PythonLicense:GPL-2.0Stargazers:9798Issues:231Issues:218

ysoserial

A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.

Language:JavaLicense:MITStargazers:7718Issues:213Issues:102

ipex-llm

Accelerate local LLM inference and finetuning (LLaMA, Mistral, ChatGLM, Qwen, Baichuan, Mixtral, Gemma, Phi, MiniCPM, etc.) on Intel XPU (e.g., local PC with iGPU and NPU, discrete GPU such as Arc, Flex and Max); seamlessly integrate with llama.cpp, Ollama, HuggingFace, LangChain, LlamaIndex, GraphRAG, DeepSpeed, vLLM, FastChat, Axolotl, etc.

Language:PythonLicense:Apache-2.0Stargazers:6614Issues:252Issues:2585

sqlcipher

SQLCipher is a standalone fork of SQLite that adds 256 bit AES encryption of database files and other security features.

Language:CLicense:NOASSERTIONStargazers:6206Issues:253Issues:438

sqlflow

Brings SQL and AI together.

Language:GoLicense:Apache-2.0Stargazers:5085Issues:168Issues:1025

AD-Attack-Defense

Attack and defend active directory using modern post exploitation adversary tradecraft activity

knock

Knock Subdomain Scan

Language:PythonLicense:GPL-3.0Stargazers:3861Issues:135Issues:86

MailSniper

MailSniper is a penetration testing tool for searching through email in a Microsoft Exchange environment for specific terms (passwords, insider intel, network architecture information, etc.). It can be used as a non-administrative user to search their own email, or by an administrator to search the mailboxes of every user in a domain.

Language:PowerShellLicense:MITStargazers:2921Issues:98Issues:53

NoSQLMap

Automated NoSQL database enumeration and web application exploitation tool.

Language:PythonLicense:GPL-3.0Stargazers:2892Issues:106Issues:75

BigDL-2.x

BigDL: Distributed TensorFlow, Keras and PyTorch on Apache Spark/Flink & Ray

Language:Jupyter NotebookLicense:Apache-2.0Stargazers:2663Issues:107Issues:3

dependency-track

Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.

Language:JavaLicense:Apache-2.0Stargazers:2655Issues:69Issues:1964

Striker

Striker is an offensive information and vulnerability scanner.

Language:PythonLicense:GPL-3.0Stargazers:2224Issues:118Issues:62

GitMiner

Tool for advanced mining for content on Github

Language:PythonLicense:GPL-3.0Stargazers:2090Issues:108Issues:21

anchore-engine

A service that analyzes docker images and scans for vulnerabilities

Language:PythonLicense:Apache-2.0Stargazers:1583Issues:53Issues:707

git-all-secrets

A tool to capture all the git secrets by leveraging multiple open source git searching tools

Language:GoLicense:MITStargazers:1107Issues:39Issues:37

public-writeup

CTF write-ups by Plaid Parliament of Pwning

lambda-refarch-mapreduce

This repo presents a reference architecture for running serverless MapReduce jobs. This has been implemented using AWS Lambda and Amazon S3.

Language:JavaScriptLicense:MIT-0Stargazers:427Issues:85Issues:7

lambhack

A very vulnerable serverless application in AWS Lambda

Language:GoLicense:MITStargazers:94Issues:9Issues:2

Alpine

An opinionated scaffolding framework that jumpstarts Java projects with an API-first design, secure defaults, and minimal dependencies

Language:JavaLicense:Apache-2.0Stargazers:62Issues:9Issues:49

buildroot-osx

Buidroot OSX - Use Buildroot on OSX natively without a Linux container.

Language:MakefileLicense:NOASSERTIONStargazers:44Issues:6Issues:0

hwbridge_api

Metasploit Hardware Bridge API docs

Language:JavaScriptLicense:NOASSERTIONStargazers:3Issues:3Issues:0