Stars
收集一些比较优秀的开源安全项目,以帮助甲方安全从业人员构建企业安全能力。
🚀Vulfocus 是一个漏洞集成平台,将漏洞环境 docker 镜像,放入即可使用,开箱即用。
Impacket is a collection of Python classes for working with network protocols.
Aggressor Script, Kits, Malleable C2 Profiles, External C2 and so on
E-mails, subdomains and names Harvester - OSINT
The Elevate Kit demonstrates how to use third-party privilege escalation attacks with Cobalt Strike's Beacon payload.
The successor to reDuh, pwn a bastion webserver and create SOCKS proxies through the DMZ. Pivot and pwn.
远控免杀系列文章及配套工具,汇总测试了互联网上的几十种免杀工具、113种白名单免杀方式、8种代码编译免杀、若干免杀实战技术,并对免杀效果进行了一一测试,为远控的免杀和杀软对抗免杀提供参考。
Java安全相关的漏洞和技术demo,原生Java、Fastjson、Jackson、Hessian2、XML反序列化漏洞利用和Spring、Dubbo、Shiro、CAS、Tomcat、RMI、Nexus等框架\中间件\功能的exploits以及Java Security Manager绕过、Dubbo-Hessian2安全加固等等实践代码。
Collection of quality safety articles. Awesome articles.
Ma3k4H3d / awesome-mac
Forked from jaywcjlove/awesome-mac Now we have become very big, Different from the original idea. Collect premium software in various categories.
对 The Hacker Playbook 3 的翻译。
Interesting APT Report Collection And Some Special IOCs
A powerful and open-source toolkit for hackers and security automation - 安全行业从业者自研开源扫描器合辑