Highlights
-
FileMonitor Public
文件变化实时监控工具(代码审计/黑盒/白盒审计辅助工具)
-
SinkFinder Public
闭源系统半自动漏洞挖掘工具,针对 jar/war/zip 进行静态代码分析,输出从source到sink的可达路径。LLM将验证路径可达性,并根据上下文给出该路径可信分数
-
-
fuzzDicts Public
You Know, For WEB Fuzzing ! 日站用的字典。
-
Chat2DB Public
Forked from CodePhiliaX/Chat2DB🔥 🔥 🔥 An intelligent and versatile general-purpose SQL client and reporting tool for databases which integrates ChatGPT capabilities.(智能的通用数据库SQL客户端和报表工具)
-
-
-
astexplorer Public
Forked from fkling/astexplorerA web tool to explore the ASTs generated by various parsers.
JavaScript MIT License UpdatedAug 19, 2022 -
-
-
MySQLMonitor Public
MySQL实时监控工具(代码审计/黑盒/白盒审计辅助工具)
-
-
-
-
Loki Public
一个轻量级Web蜜罐 - A Little Web Honeypot.🍯🍯🍯🐝🐝🐝
-
Copy2Java Public
一键生成Java代码的burp插件/Generate Java script for fuzzing in Burp。
-
packet-agent Public
Forked from Netis/cloud-probeA toolset for network packet capture in Cloud/Kubernetes and Virtualized environment.
-
hetty Public
Forked from dstotijn/hettyHetty is an HTTP toolkit for security research.
-
ApkAnalyser Public
一键提取安卓应用中可能存在的敏感信息。
-
-
captcha-killer Public
Forked from c0ny1/captcha-killerburp验证码识别接口调用插件
-
evilzip Public
evilzip lets you create a zip file(with password) that contains files with directory traversal characters in their embedded path.
-
-
-
-
dnscat2 Public
去除了流量特征的UDP协议跨平台机器管理工具
-
JNDI-Injection-Exploit Public
JNDI注入测试工具改版(A tool which generates JNDI links can start several servers to exploit JNDI Injection vulnerability,like Jackson,Fastjson,etc)
-
-
a golang http request library for humans
Go Apache License 2.0 UpdatedSep 27, 2020 -
XSS-Fishing2-CS Public
鱼儿在cs上线后自动收杆|Automatically stop fishing in javascript after the fish is hooked