Red Teamer
ATTCK-PenTester-Book. ATTCK-PenTester-Book
1.2kpenetration. 渗透 超全面的渗透资料💯 包含:0day,xss,sql注入,提权……
199windows-kernel-exploits. windows-kernel-exploits Windows平台提权漏洞集合
26SharpRDP. SharpRDP改编版
20hacker-roadmap. :pushpin: A guide for amateurs pen testers and a collection of hacking tools, resources and references to practice ethical hacking, pen testing and web security.
16web-security. Web安全中比较好的文章
6git-recipes. 🥡 Git recipes in Chinese by Zhongyi Tong. 高质量的Git中文教程.
4PhishingExploit. PhishingExploit
4Enterprise_-Security_tools. 企业安全建设中用到的开源or“免费”的工具
4rtfm. Cheat sheet and notes inspired by the book RTFM - Red Team Field Manual
3vulstudy. 使用docker快速搭建各大漏洞学习平台,目前可以一键搭建12个平台。
3SQLInjectionWiki. 一个专注于聚合和记录各种SQL注入方法的wiki
3OSEE. Collection of resources for my preparation to take the OSEE certification.
3permeate. 一个用于参透测试演练的WEB系统,用于提升寻找网站能力,也可以用于web安全教学
3doubi-1. 一个逗比写的各种逗比脚本~
3Red-Teaming-Toolkit. A collection of open source and commercial tools that aid in red team operations.
2codeparkshare. Python初学者(零基础学习Python、Python入门)书籍、视频、资料、社区推荐
2net-creds. Sniffs sensitive data from interface or pcap
2PublicMonitors. 对公网IP列表进行端口服务扫描,发现周期内的端口服务变化情况和弱口令安全风险
2mail_fishing. 甲方安全工程师必备,内部钓鱼系统
2openvpn-install. OpenVPN road warrior installer for Debian, Ubuntu and CentOS
2demo. demo
1windows-binary-tools. Various tools besides Msys2 that I've found useful to have available on windows. Create an issue if you have anything you want to add, want some binaries updated, or you think that some of them should be moved or re-moved.
1awesome-windows-domain-hardening. A curated list of awesome Security Hardening techniques for Windows.
1DB_BaseLine. 数据库基线检查工具
1dnsrecon. DNS Enumeration Script
1PowerShell. PowerShell scripts for Mick's IT Blogs
1pentest-bookmarks-1. A collection of penetration testing related sites
1linux_information. 自动化收集linux信息
1Keylogger. A simple keylogger for Windows, Linux and Mac
1baidu-netdisk-downloaderx. :zap: 百度网盘不限速下载器 BND,支持 Windows、Mac 和 Linux。
1php_bugs. PHP代码审计分段讲解
1RSSHub. 🍰 使用 RSS 连接全世界
1BadMod. BadMod detect websites cms & auto exploit :D
1AutoNSE. Massive NSE (Nmap Scripting Engine) AutoSploit and AutoScanner
1upload-fuzz-dic-builder. 上传漏洞fuzz字典生成脚本
1ids_bypass. IDS Bypass tricks
1security. Happy Hacker
1abuse-ssl-bypass-waf. Bypassing WAF by abusing SSL/TLS Ciphers
1checkO365. checkO365 is a tool to check if a target domain is using O365
1maltrail. Malicious traffic detection system
1Python-Backdoor. This program is an opensource, hidden and undetectable backdoor/reverse shell/RAT for Windows made in Python 3 which contains many features such as multi-client support and cross-platform server.
1OSCPRepo. A list of commands, scripts, resources, and more that I have gathered and attempted to consolidate for use as OSCP study material. Commands in 'Usefulcommands' Keepnote. Bookmarks and reading material in 'BookmarkList' Keepnote. Reconscan in scripts folder.
1Worse-PDF. Turn a normal PDF file into malicious.Use to steal Net-NTLM Hashes from windows machines.
1Awesome-Hacking-Resources. A collection of hacking / penetration testing resources to make you better!
1SourceLeakHacker. 一个多线程WEB源码泄漏检测工具
1architect-awesome. 后端架构师技术图谱
1Base-Learning-for-Security-Offers. 404notfound的知识体系
1lightsocks. ⚡️一个轻巧的网络混淆代理🌏
1awesome-ninja-admins. :dizzy: A collection of awesome lists, manuals, blogs, hacks, one-liners and tools for Awesome Ninja Admins.
1GhostTunnel. GhostTunnel is a covert backdoor transmission method that can be used in an isolated environment.
1Bluto. DNS Recon | Brute Forcer | DNS Zone Transfer | DNS Wild Card Checks | DNS Wild Card Brute Forcer | Email Enumeration | Staff Enumeration | Compromised Account Checking
1xiao-webshell. a collection of webshell
1Tunna. Tunna is a set of tools which will wrap and tunnel any TCP communication over HTTP. It can be used to bypass network restrictions in fully firewalled environments.
1iodine. Official git repo for iodine dns tunnel
1DiscoverSubdomain. 前渗透信息探测工具集-子域名
1