- 👋 Hi, I’m @fj2m3iko
- 👀 I’m interested in ...
- 🌱 I’m currently learning ...
- 💞️ I’m looking to collaborate on ...
- 📫 How to reach me ...
fj2m3iko Goto Github PK
Type: User
Type: User
ffffffff0x 团队维护的安全知识框架,内容包括不仅限于 web安全、工控安全、取证、应急、蓝队设施部署、后渗透、Linux安全、各类靶机writup
ARL Docker 环境分布式部署
📦 Make security testing of K8s, Docker, and Containerd easier.
docker container escape check || Docker 容器逃逸检测
Apache RocketMQ 远程代码执行漏洞(CVE-2023-33246) Exploit
fastjson漏洞检测辅助工具, JNDI服务利用工具 RMI/LDAP,支持部分场景回显,内存shell等辅助利用神器
Config files for my GitHub profile.
heapdump敏感信息查询工具,例如查找 spring heapdump中的密码明文,AK,SK等
a rep for documenting my study, may be from 0 to 0.1
打造最强的Java安全研究与安全开发面试题库,包含问题和详细的答案,帮助师傅们找到满意的工作
A malicious LDAP server for JNDI injection attacks
对原版https://github.com/feihong-cs/JNDIExploit 进行了实用化修改
从0开始学安全,注重实战+技巧的运用,分享各种安全攻防干货,包括但不限于:Web安全、代码审计 、内网渗透、企业安全等。
Hide a process under Linux using the ld preloader (https://sysdig.com/blog/hiding-linux-processes-for-fun-and-profit/)
Metarget is a framework providing automatic constructions of vulnerable infrastructures.
Nacos JRaft Hessian 反序列化 RCE 加载字节码 注入内存马 不出网利用
渗透测试有关的POC、EXP、脚本、提权、小工具等---About penetration-testing python-script poc getshell csrf xss cms php-getshell domainmod-xss penetration-testing-poc csrf-webshell cobub-razor cve rce sql sql-poc poc-exp bypass oa-getshell cve-cms
一个关于PHP的代码审计项目
红蓝对抗以及护网相关工具和资料,内存shellcode(cs+msf)和内存马查杀工具
若依后台定时任务一键利用
Quickly upload files to aliyun OSS by aliyun-oss-csharp-sdk
一款针对Shiro550漏洞进行快速漏洞利用工具。 对 @SummerSec 大佬的项目https://github.com/SummerSec/ShiroAttack2 进行了一些改进。
SpringBoot 相关漏洞学习资料,利用方法和技巧合集,黑盒安全评估 check list
A Swagger API Exploit
A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.
A declarative, efficient, and flexible JavaScript library for building user interfaces.
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
An Open Source Machine Learning Framework for Everyone
The Web framework for perfectionists with deadlines.
A PHP framework for web artisans
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
Some thing interesting about web. New door for the world.
A server is a program made to process requests and deliver data to clients.
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
Some thing interesting about visualization, use data art
Some thing interesting about game, make everyone happy.
We are working to build community through open source technology. NB: members must have two-factor auth.
Open source projects and samples from Microsoft.
Google ❤️ Open Source for everyone.
Alibaba Open Source for everyone
Data-Driven Documents codes.
China tencent open source team.