Skip to content
View hello-noob's full-sized avatar

Block or report hello-noob

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Open Redirection Analyzer

Python 768 107 Updated Mar 5, 2023

A fuzzer for detecting open redirect vulnerabilities

Python 734 136 Updated Jul 1, 2024

Automatic SSRF fuzzer and exploitation tool

Python 3,126 533 Updated Feb 26, 2025

一款强大的 burp 安全测试插件,集成多种安全测试功能,支持自动化扫描和手动测试。

Java 552 36 Updated Dec 18, 2024

用于Linux应急响应,快速排查异常用户登录情况和入侵信息排查,准确定位溯源时间线,高效辅助还原攻击链。

Shell 537 50 Updated Dec 11, 2024

FastjsonScan4Burp 一款基于burp被动扫描的fastjson漏洞探测插件,可针对数据包中存在json的参数或请求体进行payload测试。旨在帮助安全人员更加便捷的发现、探测、深入利用fastjson漏洞,目前已实现fastjson探测、版本、依赖探测、出网及不出网利用和简易的bypass waf功能

Java 77 4 Updated Mar 13, 2025

本Burp Suite插件专为文件上传漏洞检测设计,提供自动化Fuzz测试,共300+条payload。

Python 199 16 Updated Mar 4, 2025

Burp suite 短信轰炸辅助绕过插件

Java 165 13 Updated Mar 23, 2025

The Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes the technical processes for verifying the contr…

Python 12,081 2,406 Updated Mar 24, 2025

The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

Python 29,147 4,077 Updated Mar 11, 2025

Burp Suite extension that extends Burp to support storing and reusing variables in requests

Java 15 2 Updated Feb 4, 2025

针对JWT渗透开发的漏洞验证/密钥爆破工具,针对CVE-2015-9235/空白密钥/未验证签名攻击/CVE-2016-10555/CVE-2018-0114/CVE-2020-28042的结果生成用于FUZZ,也可使用字典/字符枚举(包括JJWT)的方式进行爆破(JWT Crack)

Go 193 7 Updated Mar 12, 2025

对Web渗透项目资产进行快速存活验证

Python 463 34 Updated Dec 9, 2024

:octocat: Browser extension that simplifies the GitHub interface and adds useful features

TypeScript 26,085 1,530 Updated Mar 24, 2025

漏洞报告已脱敏

HTML 144 122 Updated Jul 5, 2024

基于Memprocfs和Volatility的可视化内存取证工具

Python 730 58 Updated Mar 25, 2025

从流量包匹配敏感信息的工具-可用作bp、浏览器的下游代理。0感知、无卡顿,支持https。

Go 265 16 Updated Aug 25, 2024

Prompt越狱手册

2,219 238 Updated Dec 17, 2024

Ai迷思录(应用与安全指南)

851 90 Updated Mar 24, 2025

js 代码反混淆

JavaScript 671 163 Updated Mar 29, 2024

Agentic LLM Vulnerability Scanner / AI red teaming kit 🧪

Python 1,194 187 Updated Mar 24, 2025

A helpful Java Deserialization exploit framework.

Java 1,208 150 Updated Feb 17, 2025

A python tool used to discover endpoints, potential parameters, and a target specific wordlist for a given target

Python 1,293 164 Updated Mar 20, 2025

A CAT called tabby ( Code Analysis Tool )

Java 1,429 162 Updated Feb 26, 2025

declutters url lists for crawling/pentesting

Python 1,319 157 Updated Feb 23, 2025

自动化反编译微信小程序,小程序安全评估工具,发现小程序安全问题,自动解密,解包,可还原工程目录,支持Hook,小程序修改

Go 4,644 967 Updated Sep 20, 2024

Jar Analyzer - 一个JAR包分析工具,批量分析,SCA漏洞分析,方法调用关系搜索,字符串搜索,Spring组件分析,信息泄露检查,CFG程序分析,JVM栈帧分析,进阶表达式搜索,字节码指令级的动态调试分析,反编译JAR包一键导出,一键提取序列化数据恶意代码,一键分析BCEL字节码

Java 1,418 133 Updated Mar 20, 2025

Binoculars is an IDA PRO plugin with an integrated AI interface

Python 52 7 Updated Mar 11, 2025

HTTP parameter discovery suite.

Python 5,525 811 Updated Feb 20, 2025

CSTC is a Burp Suite extension that allows request/response modification using a GUI analogous to CyberChef

Java 231 28 Updated Mar 21, 2025
Next