Stars
Support ALL Windows Version
Seatbelt is a C# project that performs a number of security oriented host-survey "safety checks" relevant from both offensive and defensive security perspectives.
Internal Monologue Attack: Retrieving NTLM Hashes without Touching LSASS
Pre-Built Vulnerable Environments Based on Docker-Compose
Weblogic com.tangosol.util.extractor.ReflectionExtractor RCE
一款长亭自研的完善的安全评估工具,支持常见 web 安全问题扫描和自定义 poc | 使用之前务必先阅读文档
A tool for embedding XXE/XML exploits into different filetypes
brianwrf / ysoserial
Forked from frohoff/ysoserialA proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.
You Know, For WEB Fuzzing ! 日站用的字典。
PowerSploit - A PowerShell Post-Exploitation Framework
PowerTools is a collection of PowerShell projects with a focus on offensive operations.
搜集了市面上绝大部分weblogic解密方式,整理了7种解密weblogic的方法及响应工具。
PEDA - Python Exploit Development Assistance for GDB
CMS Detection and Exploitation suite - Scan WordPress, Joomla, Drupal and over 180 other CMSs
A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.
CVE-2018-8581 | Microsoft Exchange Server Elevation of Privilege Vulnerability