一个轮子,用于渗透测试优化的 DNS/HTTP 日志工具,简洁、轻便、更易于使用。
高质量社工库机器人推荐(2024.5更新). A curated list of high-quality social engineering bots for privacy leak checks.
Red Team C2 Framework with AV/EDR bypass capabilities.
A tool for extracting passwords and IDs from Sunflower and ToDesk applications.
A GitHub repository for a script that exploits SMTP vulnerabilities to establish a reverse shell connection.
A proof-of-concept for bypassing EDR and antivirus solutions to gain shell access via memory injection.
闪电搜索是一个用户友好的多平台资产测绘客户端,支持多平台界面化搜索。
A vulnerability detection tool for FineReport, aimed at educational purposes.
A host collision tool optimized for fewer false positives, aiding security testers in asset discovery.
A tool that acts as an SMB server to relay Kerberos AP-REQ to CIFS or HTTP.
Classic Web shell upload techniques & Web RCE techniques for web security testing and vulnerability exploitation
A lightweight code auditing scanner for red teams to quickly match Sink points in code during assessments.