pipichong's repositories
bypass_disablefunc_via_LD_PRELOAD
bypass disable_functions via LD_PRELOA (no need /usr/sbin/sendmail)
CMS-Hunter
CMS漏洞测试用例集合
Cobalt_Strike_wiki
Cobalt Strike系列
fuzzDicts
Web Pentesting Fuzz 字典,一个就够了。
httpscan
一个爬虫式的网段Web主机发现小工具 # A HTTP Service detector with a crawler from IP/CIDR
Intranet_Penetration_Tips
2018年初整理的一些内网渗透TIPS,后面更新的慢,所以公开出来希望跟小伙伴们一起更新维护~
LangSrcCurise
SRC子域名资产监控
LaZagne
Credentials recovery project
Malleable-C2-Profiles
Malleable C2 is a domain specific language to redefine indicators in Beacon's communication. This repository is a collection of Malleable C2 profiles that you may use. These profiles work with Cobalt Strike 3.x.
Micro8
Gitbook
CobaltstrikeSource
Cobaltstrike4.1 Source
mimikatz
A little tool to play with Windows security
MYSQL_SQL_BYPASS_WIKI
mysql注入,bypass的一些心得
pentest_study
从零开始内网渗透学习
pipichong.github.io
BY Blog ->
pochubs
PocHubs是为了整合网上知名开源框架的漏洞详细和POC
redteam_vul
红队作战中比较常遇到的一些重点系统漏洞整理。
SweetPotato
SweetPotato修改版,用于webshell下执行命令 感谢@zcgonvh和@RcoIl两位师傅的耐心指导
VulScan
漏洞扫描:st2、tomcat、未授权访问等等
webshell
This is a webshell open source project
Windows-exploits
Windows 下的提权大合集