There are 221 repositories under ctf topic.
A collection of hacking / penetration testing resources to make you better!
⚡ Automatically decrypt encryptions without knowing the key or cipher, decode encodings, and crack hashes ⚡
CTF framework and exploit development library
A curated list of CTF frameworks, libraries, resources and softwares
OWASP Juice Shop: Probably the most modern and sophisticated insecure web application
GEF (GDB Enhanced Features) - a modern experience for GDB with advanced debugging capabilities for exploit devs & reverse engineers on Linux
ffffffff0x 团队维护的安全知识框架,内容包括不仅限于 web安全、工控安全、取证、应急、蓝队设施部署、后渗透、Linux安全、各类靶机writup
Monitor linux processes without root permissions
This cheasheet is aimed at the CTF Players and Beginners to help them understand the fundamentals of Privilege Escalation with examples.
Automatic SSRF fuzzer and exploitation tool
The best tool for finding one gadget RCE in libc.so.6
A tool to identify and exploit sudo rules' misconfigurations and vulnerabilities within sudo for linux privilege escalation.
Writeups for HacktheBox 'boot2root' machines
China's first CTFTools framework.中国国内首个CTF工具框架,旨在帮助CTFer快速攻克难关
Here record some tips about pwn. Something is obsoleted and won't be updated. Sorry about that.
A collection of tiny XSS Payloads that can be used in different contexts. https://tinyxss.terjanq.me
Hosted Reverse Shell generator with a ton of functionality. -- (Great for CTFs)
Build a database of libc offsets to simplify exploitation
How to exploit a double free vulnerability in 2021. Use After Free for Dummies
Library consisting of explanation and implementation of all the existing attacks on various Encryption Systems, Digital Signatures, Key Exchange, Authentication methods along with example challenges from CTFs
🔗 Don't know what type of hash it is? Name That Hash will name that hash type! 🤖 Identify MD5, SHA256 and 300+ other hashes ☄ Comes with a neat web app 🔥