bm's repositories
2022-HW-POC
2022 护网行动 POC 整理
awesome-english-ebooks
经济学人(含音频)、纽约客、卫报、连线、大西洋月刊等英语杂志免费下载,支持epub、mobi、pdf格式, 每周更新
Awesome-POC
一个各类漏洞POC知识库
awesome-privacy-chinese
[WIP]国内隐私合规技术交流
bilibili-API-collect
哔哩哔哩-API收集整理【不断更新中....】
Blockchain-dark-forest-selfguard-handbook
Blockchain dark forest selfguard handbook. Master these, master the security of your cryptocurrency.
cf
Cloud Exploitation Framework 云环境利用框架,方便安全人员在获得 AK 的后续工作
copilot-docs
Documentation for GitHub Copilot
coreruleset
OWASP ModSecurity Core Rule Set (Official Repository)
CVE-Alert
懒人必备,CVE漏洞预警脚本,支持钉钉/企业微信群机器人消息通知
DNSlog-GO
DNSLog-GO 是一款golang编写的监控 DNS 解析记录的工具,自带WEB界面
Heimdallr
一款完全被动监听的谷歌插件,用于高危指纹识别、蜜罐特征告警和拦截、机器特征对抗
JNDIExploit-1
对原版https://github.com/feihong-cs/JNDIExploit 进行了实用化修改
msrc-api
A collection of tools to interact with Microsoft Security Response Center API
ocr_api_server
使用ddddocr的最简api搭建项目,支持docker
Octopii
An AI-powered Personal Identifiable Information (PII) scanner.
PeiQi-WIKI-Book
面向网络安全从业者的知识文库🍃
Poc
PoC collection of Atlassian(Jira, Confluence, Bitbucket) products and Jenkins, Solr, Nexus
PoC-in-GitHub
📡 PoC auto collect from GitHub. ⚠️ Be careful Malware.
pocsuite3
pocsuite3 is an open-sourced remote vulnerability testing framework developed by the Knownsec 404 Team.
SecLists
SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.
The-Hacker-Recipes
This project is aimed at freely providing technical guides on various hacking topics: Active Directory services, web services, servers, intelligence gathering, physical intrusion, phishing, mobile apps, iot, social engineering, etc.
Threathunting-book
Threat hunting Web Windows AD linux ATT&CK TTPs
tools
脚本小子天堂~
TOP
TOP All bugbounty pentesting CVE-2023- POC Exp RCE example payload Things
vshell
vshell 是一款go编写的主机管理工具 vshell is a Remote Administation tool written in Go (RAT)
vulhub
Pre-Built Vulnerable Environments Based on Docker-Compose
webshell
This is a webshell open source project
XLL_Phishing
XLL Phishing Tradecraft