Skip to content
View riujierjiadena's full-sized avatar

Block or report riujierjiadena

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

In-depth attack surface mapping and asset discovery

Go 12,435 1,933 Updated Feb 7, 2025

弱口令检测、 漏洞扫描、端口扫描(协议识别,组件识别)、web目录扫描、等保模拟定级、自动化运维、等保工具(网络安全等级保护现场测评工具)内置3级等保核查命令、基线核查工具、键盘记录器

Go 1,286 210 Updated Jan 22, 2025

sqlmap Xplus 基于 sqlmap,对经典的数据库注入漏洞利用工具进行二开!

Python 624 61 Updated Jan 21, 2025

一款综合性网络安全检测和运维工具,旨在快速资产发现、识别、检测,构建基础资产信息库,协助甲方安全团队或者安全运维人员有效侦察和检索资产,发现存在的薄弱点和攻击面。

1,824 114 Updated Jan 22, 2025

攻防演练过程中,我们通常会用浏览器访问一些资产,但很多未授权/敏感信息/越权隐匿在已访问接口过html、JS文件等,该插件能让我们发现未授权/敏感信息/越权/登陆接口等。

Java 1,085 68 Updated Oct 3, 2024

OneScan 是一款用于递归目录扫描的 BurpSuite 插件

Java 822 37 Updated Jan 20, 2025

一款基于BurpSuite的被动式shiro检测插件

Java 1,703 155 Updated Dec 14, 2022

安全服务集成化工具平台,希望能帮助你少开几个应用测试

Go 600 74 Updated Jan 17, 2025

针对SpringBoot的开源渗透框架,以及Spring相关高危漏洞利用工具

Python 1,750 147 Updated Jan 12, 2025

HTTP parameter discovery suite.

Python 5,413 810 Updated Dec 17, 2024

EHole(棱洞)3.0 重构版-红队重点攻击系统指纹探测工具

Go 3,183 407 Updated Apr 2, 2024

Nacos漏洞综合利用GUI工具,集成了默认口令漏洞、SQL注入漏洞、身份认证绕过漏洞、反序列化漏洞的检测及其利用

Java 1,010 74 Updated Aug 2, 2024

httpx is a fast and multi-purpose HTTP toolkit that allows running multiple probes using the retryablehttp library.

Go 8,066 868 Updated Feb 3, 2025

Fast passive subdomain enumeration tool.

Go 11,074 1,322 Updated Feb 3, 2025

一款快速、全面、易用的页面信息提取工具,可快速发现和提取页面中的JS、URL和敏感信息。

Go 2,753 207 Updated Jan 5, 2024

An incredibly fast proxy checker & IP rotator with ease.

Go 1,705 198 Updated Feb 6, 2025

C2-下一代RAT

350 39 Updated Aug 10, 2024

哥斯拉webshell管理工具二次开发规避流量检测设备

888 46 Updated Nov 18, 2024

World's fastest and most advanced password recovery utility

C 21,889 2,974 Updated Aug 16, 2024

A fast TCP/UDP tunnel over HTTP

Go 14,116 1,443 Updated Sep 28, 2024

Impacket is a collection of Python classes for working with network protocols.

Python 13,846 3,629 Updated Feb 6, 2025

本项目集成了全网优秀的攻防武器工具项目,包含自动化利用,子域名、目录扫描、端口扫描等信息收集工具,各大中间件、cms、OA漏洞利用工具,爆破工具、内网横向、免杀、社工钓鱼以及应急响应、甲方安全资料等其他安全攻防资料。

5,821 1,139 Updated Jan 14, 2025

Extract and decrypt browser data, supporting multiple data types, runnable on various operating systems (macOS, Windows, Linux).

Go 11,883 1,629 Updated Jan 20, 2025

ARL官方仓库备份项目:ARL(Asset Reconnaissance Lighthouse)资产侦察灯塔系统旨在快速侦察与目标关联的互联网资产,构建基础资产信息库。 协助甲方安全团队或者渗透测试人员有效侦察和检索资产,发现存在的薄弱点和攻击面。

Python 1,258 588 Updated Dec 7, 2024

Chisel: A Modern Hardware Design Language

Scala 4,126 614 Updated Feb 7, 2025

Pingtunnel is a tool that send TCP/UDP traffic over ICMP

Go 3,148 542 Updated Aug 14, 2024

Python ProxyPool for web spider

Python 21,929 5,233 Updated Sep 10, 2024

A list of useful payloads and bypass for Web Application Security and Pentest/CTF

Python 63,024 14,960 Updated Jan 25, 2025

SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, se…

PHP 60,585 24,122 Updated Feb 6, 2025
Next