Starred repositories
Make everyone in your VLAN ASRep roastable
面向红队的, 高度可控可拓展的自动化扫描引擎 | A highly controllable and scalable automated scanning engine for red teams
Java web common vulnerabilities and security code which is base on springboot and spring security
A tool to extract the IdP cert from vCenter backups and log in as Administrator
Reproducing Spyboy technique to terminate all EDR/XDR/AVs processes
Proof of Concept Exploit for vCenter CVE-2021-21972
reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities
OWASP dependency-check is a software composition analysis utility that detects publicly disclosed vulnerabilities in application dependencies.
Automated All-in-One OS Command Injection Exploitation Tool.
Kunyu, more efficient corporate asset collection
Exploiting CVE-2021-44228 in VMWare Horizon for remote code execution and more.
The fastest and complete solution for domain recognition. Supports screenshoting, port scan, HTTP check, data import from other tools, subdomain monitoring, alerts via Discord, Slack and Telegram, …
🔒 A compiled checklist of 300+ tips for protecting digital security and privacy in 2024
Community curated list of public bug bounty and responsible disclosure programs.
Detector for Log4Shell exploitation attempts
一款甲方资产巡航扫描系统。系统定位是发现资产,进行端口爆破。帮助企业更快发现弱口令问题。主要功能包括: 资产探测、端口爆破、定时任务、管理后台识别、报表展示
essential templates for kenzer [DEPRECATED]
渗透测试有关的POC、EXP、脚本、提权、小工具等---About penetration-testing python-script poc getshell csrf xss cms php-getshell domainmod-xss csrf-webshell cobub-razor cve rce sql sql-poc poc-exp bypass oa-getshell cve…
A curated collection of top-tier penetration testing tools and productivity utilities across multiple domains. Join us to explore, contribute, and enhance your hacking toolkit!
Quickly upload files to aliyun OSS by aliyun-oss-csharp-sdk
SharpSQLTools 和@Rcoil一起写的小工具,可上传下载文件,xp_cmdshell与sp_oacreate执行命令回显和clr加载程序集执行相应操作。