phil-fly's starred repositories

API-Security-Checklist

Checklist of the most important security countermeasures when designing, testing, and releasing your API

HackBrowserData

Extract and decrypt browser data, supporting multiple data types, runnable on various operating systems (macOS, Windows, Linux).

atomic-red-team

Small and highly portable detection tests based on MITRE's ATT&CK.

fuzzDicts

Web Pentesting Fuzz 字典,一个就够了。

kscan

Kscan是一款纯go开发的全方位扫描器,具备端口扫描、协议检测、指纹识别,暴力破解等功能。支持协议1200+,协议指纹10000+,应用指纹20000+,暴力破解协议10余种。

Language:GoLicense:GPL-3.0Stargazers:3704Issues:43Issues:142

APTnotes

Various public documents, whitepapers and articles about APT campaigns

cel-spec

Common Expression Language -- specification and binary representation

Language:GoLicense:Apache-2.0Stargazers:2474Issues:42Issues:106

dismap

Asset discovery and identification tools 快速识别 Web 指纹信息,定位资产类型。辅助红队快速定位目标资产信息,辅助蓝队发现疑似脆弱点

Language:GoLicense:GPL-3.0Stargazers:1926Issues:26Issues:31

slipstream

NAT Slipstreaming allows an attacker to remotely access any TCP/UDP services bound to a victim machine, bypassing the victim’s NAT/firewall, just by anyone on the victim's network visiting a website

TideFinger

TideFinger——指纹识别小工具,汲取整合了多个web指纹库,结合了多种指纹检测方法,让指纹检测更快捷、准确。

go-audit

go-audit is an alternative to the auditd daemon that ships with many distros

Language:GoLicense:MITStargazers:1560Issues:49Issues:46

pocassist

傻瓜式漏洞PoC测试框架

Language:GoLicense:Apache-2.0Stargazers:1407Issues:28Issues:49

OSSEM

Open Source Security Events Metadata (OSSEM)

Language:PythonLicense:MITStargazers:1222Issues:107Issues:39

go-mitmproxy

mitmproxy implemented with golang. 用 Golang 实现的中间人攻击(Man-in-the-middle),解析、监测、篡改 HTTP/HTTPS 流量。

Language:GoLicense:MITStargazers:1143Issues:17Issues:55

suricata-rules

Suricata IDS rules 用来检测红队渗透/恶意行为等,支持检测CobaltStrike/MSF/Empire/DNS隧道/Weevely/菜刀/冰蝎/挖矿/反弹shell/ICMP隧道等

metarget

Metarget is a framework providing automatic constructions of vulnerable infrastructures.

Language:PythonLicense:Apache-2.0Stargazers:1020Issues:17Issues:65

OpenPLC_v3

OpenPLC Runtime version 3

rogue_mysql_server

A rouge mysql server supports reading files from most mysql libraries of multiple programming languages.

Language:GoLicense:MITStargazers:644Issues:6Issues:11

sqlhooks

Attach hooks to any database/sql driver

Language:GoLicense:MITStargazers:637Issues:9Issues:24

ELFkickers

A collection of programs that access and manipulate ELF files.

Language:CLicense:GPL-2.0Stargazers:588Issues:37Issues:14

Security-Operation-Book

常见的黑客行为监测特征及方法,涵盖端点和流量,未包含PowerShell和Sysmon。预祝运营生活愉快!

STS2G

Struts2漏洞扫描利用工具 - Golang版. Struts2 Scanner Written in Golang

Language:GoLicense:GPL-3.0Stargazers:568Issues:5Issues:1

Redpoint

Digital Bond's ICS Enumeration Tools

Language:LuaLicense:NOASSERTIONStargazers:414Issues:46Issues:6

ebpfmanager

A golang ebpf libary based on cilium/ebpf and datadog/ebpf.

Language:GoLicense:Apache-2.0Stargazers:285Issues:7Issues:21

go-telnet

Package telnet provides TELNET and TELNETS client and server implementations, for the Go programming language, in a style similar to the "net/http" library that is part of the Go standard library, including support for "middleware"; TELNETS is secure TELNET, with the TELNET protocol over a secured TLS (or SSL) connection.

Language:GoLicense:MITStargazers:258Issues:10Issues:16

GoIyov

代理抓包库,可代理解析HTTP(S)数据,支持中间人攻击。

IPCameraScanner

IP网络摄像头扫描器 - 局域网内IP网络摄像头信息收集工具

Language:PythonLicense:GPL-3.0Stargazers:38Issues:3Issues:0

go-cti

Build a local copy of MITRE ATT&CK and CAPEC. Server mode for easy querying.

Language:GoLicense:MITStargazers:30Issues:3Issues:4

honeypot-for-tcp-32764

Honeypot for router backdoor (TCP 32764)

Language:CoffeeScriptStargazers:15Issues:6Issues:1

Evil-AP-golang

Evil WiFi access point in golang