Stars
You Know, For WEB Fuzzing ! 日站用的字典。
🧑🏫 60+ Implementations/tutorials of deep learning papers with side-by-side notes 📝; including transformers (original, xl, switch, feedback, vit, ...), optimizers (adam, adabelief, sophia, ...), ga…
UNIX-like reverse engineering framework and command-line toolset
Full-featured C2 framework which silently persists on webserver with a single-line PHP backdoor
pocsuite3 is an open-sourced remote vulnerability testing framework developed by the Knownsec 404 Team.
Pre-Built Vulnerable Environments Based on Docker-Compose
用于辅助安全工程师漏洞挖掘、测试、复现,集合了mock、httplog、dns tools、xss,可用于测试各类无回显、无法直观判断或特定场景下的漏洞。
kunpeng是一个Golang编写的开源POC框架/库,以动态链接库的形式提供各种语言调用,通过此项目可快速开发漏洞检测类的系统。
The hack-requests is an http network library for hackers
Plug-in type web vulnerability scanner
🚀 A simple asset discovery engine for cybersecurity. (网络资产发现引擎)
Dockerized version of Sn1per (https://github.com/1N3/Sn1per)
Legion is an open source, easy-to-use, super-extensible and semi-automated network penetration testing tool that aids in discovery, reconnaissance and exploitation of information systems.
Automatically exported from code.google.com/p/surfjack - not actively maintained
A plugin for Burp Suite Pro to work with attacker payloads and automatically generate check digits for credit card numbers and similar numbers that end with a check digit generated using the Luhn a…
TFTP Theft is a tool which allows one to quickly scan/bruteforce a tftp server for files and download them instantly
SIPVicious OSS is a VoIP security testing toolset. It helps security teams, QA and developers test SIP-based VoIP systems and applications. This toolset is useful in simulating VoIP hacking attacks…
WAFW00F allows one to identify and fingerprint Web Application Firewall (WAF) products protecting a website.
Selenium powered Python script to automate searching for vulnerable web apps.