seraphice Goto Github PK
Name: Seraphice
Type: User
Bio: 只缘身在此山中
Location: ${jndi:ldap://127.0.0.1/Seraphice}
Name: Seraphice
Type: User
Bio: 只缘身在此山中
Location: ${jndi:ldap://127.0.0.1/Seraphice}
各种CMS、各种平台、各种系统、各种软件漏洞的EXP、POC ,该项目将持续更新
you know
本项目集成了全网优秀的攻防武器工具项目,包含自动化利用,子域名、目录扫描、端口扫描等信息收集工具,各大中间件、cms漏洞利用工具,爆破工具、内网横向及免杀、社工钓鱼以及应急响应等资料。
一款适用于以HW行动/红队/渗透测试团队为场景的移动端(Android、iOS、WEB、H5、静态网站)信息收集扫描工具,可以帮助渗透测试工程师、攻击队成员、红队成员快速收集到移动端或者静态WEB站点中关键的资产信息并提供基本的信息输出,如:Title、Domain、CDN、指纹信息、状态信息等。
ARL官方仓库备份项目:ARL(Asset Reconnaissance Lighthouse)资产侦察灯塔系统旨在快速侦察与目标关联的互联网资产,构建基础资产信息库。 协助甲方安全团队或者渗透测试人员有效侦察和检索资产,发现存在的薄弱点和攻击面。
Alibaba Java Diagnostic Tool Arthas/Alibaba Java诊断利器Arthas
A curated list of awesome Python frameworks, libraries, software and resources
Python资源大全中文版,包括:Web框架、网络爬虫、模板引擎、数据库、数据可视化、图片处理等,由「开源前哨」和「Python开发者」微信公号团队维护更新。
云环境利用框架(Cloud exploitation framework)主要用来方便红队人员在获得 AK 的后续工作。
CVE-2022-30190-follina.py-修改版,可以自定义word模板,方便实战中钓鱼使用。
[PoC] Command injection via PDF import in Markdown Preview Enhanced (VSCode, Atom)
CVE-2023-0669 GoAnywhere MFT suffers from a pre-authentication command injection vulnerability in the License Response Servlet due to deserializing an arbitrary attacker-controlled object.
冰蝎 哥斯拉 WebShell bypass
A Go microservices framework
Adversary Emulation Framework
Java安全,漏洞分析/挖掘/利用
各种安全相关思维导图整理收集
哔哩哔哩后台源码
PHP代码审计分段讲解
RedGuard is a C2 front flow control tool,Can avoid Blue Teams,AVs,EDRs check.
红方人员作战执行手册
one-click deepfake (face swap)
远程代码执行S2-062 CVE-2021-31805验证POC
安全设备告警IP全自动封禁平台,支持百万IP秒级分析处理。
✨Spark is a web-based, cross-platform and full-featured Remote Administration Tool (RAT) written in Go that allows you control all your devices anywhere. Spark是一个Go编写的,网页UI、跨平台以及多功能的远程控制和监控工具,你可以随时随地监控和控制所有设备。
spring-cloud / spring-cloud-function,spring.cloud.function.routing-expression,RCE,0day,0-day,POC,EXP
🎯 Server Side Template Injection Payloads
Apache Struts2 S2-062远程代码执行漏洞(CVE-2021-31805) | 反弹Shell
A declarative, efficient, and flexible JavaScript library for building user interfaces.
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
An Open Source Machine Learning Framework for Everyone
The Web framework for perfectionists with deadlines.
A PHP framework for web artisans
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
Some thing interesting about web. New door for the world.
A server is a program made to process requests and deliver data to clients.
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
Some thing interesting about visualization, use data art
Some thing interesting about game, make everyone happy.
We are working to build community through open source technology. NB: members must have two-factor auth.
Open source projects and samples from Microsoft.
Google ❤️ Open Source for everyone.
Alibaba Open Source for everyone
Data-Driven Documents codes.
China tencent open source team.