轻量级的无害化钓鱼项目,基于gin+gorm+grpc实现。
A tool for exploiting Confluence vulnerabilities (CVE 2021-2023) with command execution support.
Android malware (.apk) can be spread through a fake PDF document in WhatsApp.
Java反序列化/JNDI注入/恶意类生成工具,支持多种高版本bypass,支持回显/内存马等多种扩展利用。
PoC for the Untrusted Pointer Dereference in the ks.sys driver.
SQL Injection Scout is a Burp Suite extension designed to help security researchers and developers detect and analyze SQL injection vulnerabilities.
Self Cleanup in post-ex job, suitable for CobaltStrike, demonstrating self-cleaning technology in memory execution.
A penetration testing tool that automates bypassing front-end JS encryption using web scraping techniques.
亿赛通综合漏洞利用工具 is a comprehensive vulnerability exploitation tool for security self-checks.
Unauthenticated RCE on cups-browsed (exploit and nuclei template)
A comprehensive scanning tool with efficient machine detection, port scanning, protocol recognition, fingerprinting, and vulnerability scanning.
A GUI vulnerability detection tool for ThinkPHP developed using JavaFX.