yangxiaodi's starred repositories
jumpserver
An open-source PAM tool alternative to CyberArk. 广受欢迎的开源堡垒机。
Mobile-Security-Framework-MobSF
Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.
requests-html
Pythonic HTML Parsing for Humans™
browserless
Deploy headless browsers in Docker. Run on our cloud or bring your own. Free for non-commercial uses.
Scanners-Box
A powerful and open-source toolkit for hackers and security automation - 安全行业从业者自研开源扫描器合辑
subDomainsBrute
A fast sub domain brute tool for pentesters
Some-PoC-oR-ExP
各种漏洞poc、Exp的收集或编写
SSRF-Testing
SSRF (Server Side Request Forgery) testing resources
PasswordDic
2011-2019年Top100弱口令密码字典 Top1000密码字典 服务器SSH/VPS密码字典 后台管理密码字典 数据库密码字典 子域名字典
bugcrowd-levelup-subdomain-enumeration
This repository contains all the material from the talk "Esoteric sub-domain enumeration techniques" given at Bugcrowd LevelUp 2017 virtual conference
dnsAutoRebinding
ssrf、ssrfIntranetFuzz、dnsRebinding、recordEncode、dnsPoisoning、Support ipv4/ipv6
bug-bounty-101
Happy Hunting
dnstricker
A simple dns resolver of dns-record and web-record log server for pentesting
ImageTragick_Poc
ImageTragick_Poc