tdr130's starred repositories

dify

Dify is an open-source LLM app development platform. Dify's intuitive interface combines AI workflow, RAG pipeline, agent capabilities, model management, observability features and more, letting you quickly go from prototype to production.

Language:TypeScriptLicense:NOASSERTIONStargazers:46160Issues:341Issues:3790

HivisionIDPhotos

⚡️HivisionIDPhotos: a lightweight and efficient AI ID photos tools. 一个轻量级的AI证件照制作算法。

Language:PythonLicense:Apache-2.0Stargazers:9946Issues:40Issues:78

browserless

Deploy headless browsers in Docker. Run on our cloud or bring your own. Free for non-commercial uses.

Language:TypeScriptLicense:NOASSERTIONStargazers:8444Issues:63Issues:541

KCon

KCon is a famous Hacker Con powered by Knownsec Team.

promptfoo

Test your prompts, agents, and RAGs. Red teaming, pentesting, and vulnerability scanning for LLMs. Compare performance of GPT, Claude, Gemini, Llama, and more. Simple declarative configs with command line and CI/CD integration.

Language:TypeScriptLicense:MITStargazers:4267Issues:19Issues:609

sqlite-vec

A vector search SQLite extension that runs anywhere!

Language:CLicense:Apache-2.0Stargazers:3818Issues:54Issues:87

bytenode

A minimalist bytecode compiler for Node.js

Language:JavaScriptLicense:MITStargazers:2594Issues:33Issues:212

Coercer

A python script to automatically coerce a Windows server to authenticate on an arbitrary machine through 12 methods.

Language:PythonLicense:GPL-2.0Stargazers:1749Issues:23Issues:59

awesome-website-change-monitoring

A curated list of awesome tools for website diffing and change monitoring.

ConfluenceMemshell

Confluence CVE 2021,2022,2023 利用工具,支持命令执行,哥斯拉,冰蝎 内存马注入

send

基于 Bitiful S4 对象存储的 “Simul-Transfer(即传即收)” 技术实现的大文件实时多人分享,Wetransfer 或 奶牛快传 的相似开源替代品。

Language:TypeScriptLicense:Apache-2.0Stargazers:403Issues:9Issues:1

JsonExp

fastjson漏洞批量检测工具

Hikvision-

Hikvision综合漏洞利用工具

ActiveMqRCE

用java实现构造openwire协议,利用activeMQ < 5.18.3 RCE 回显利用 内存马注入

PatchGuardBypass

Bypassing PatchGuard on modern x64 systems

VulToolsKit

红队武器库漏洞利用工具合集整理

Language:HTMLStargazers:231Issues:6Issues:0

dahuaExploitGUI

dahua综合漏洞利用工具

aLIEz

杀内存马的工具,欢迎code review,提出更好的意见

TomcatVuln

Tomcat漏洞利用工具

MemShellGene

一款Java内存马生成、测试工具,搭配@ax1sX的MemShell食用。

eBPFeXPLOIT

Exploit tool implemented using ebpf.

Language:CLicense:MITStargazers:164Issues:6Issues:1

CVE-2024-43044-jenkins

Exploit for the vulnerability CVE-2024-43044 in Jenkins

Language:JavaStargazers:148Issues:3Issues:0

Deadpool

deadpool代理池工具,可从hunter、quake、fofa等网络空间测绘平台取高质量socks5代理,或本地导入socks5代理,轮询使用代理进行流量转发。

Language:GoLicense:GPL-3.0Stargazers:141Issues:0Issues:0

PwnedBoot

Using Windows' own bootloader as a shim to bypass Secure Boot

Language:CStargazers:130Issues:0Issues:0
Language:JavaLicense:Apache-2.0Stargazers:107Issues:2Issues:9

MyMSIAnalyzer

Analyse MSI files for vulnerabilities

Language:C#Stargazers:82Issues:4Issues:0

Chinese-hackers-use-WPS-to-attack

WPS 0day.hen the wps software is running, an api interface with port 4709 will be opened. An attacker can request this interface to execute commands.

Stargazers:81Issues:0Issues:0
Language:JavaScriptStargazers:67Issues:2Issues:0

CVE-2024-30088-Windows-poc

该漏洞存在于 NtQueryInformationToken 函数中,特别是在处理AuthzBasepCopyoutInternalSecurityAttributes 函数时,该漏洞源于内核在操作对象时对锁定机制的不当管理,这一失误可能导致恶意实体意外提升权限。

Language:C++License:Apache-2.0Stargazers:29Issues:1Issues:0

web-monitoring-diff

Tools for diffing and comparing web content. Also includes a web server that makes diffs available as an HTTP service.

Language:PythonLicense:GPL-3.0Stargazers:11Issues:5Issues:36