一个基于Codeql规则的go靶场
☆40Feb 19, 2025Updated last year
Alternatives and similar repositories for GoSecCode-codeql
Users that are interested in GoSecCode-codeql are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Rust 重构的 sRDI☆18Sep 9, 2024Updated last year
- 一款信息泄漏利用工具,适用于.git/.svn/.DS_Store泄漏和目录列出(dumpall Golang重构版)☆21Apr 8, 2025Updated last year
- Java Chains 插件编写 demo☆14Mar 5, 2025Updated last year
- Basic Psexec clone, but in golang.☆17Jul 2, 2022Updated 4 years ago
- CVE-2026-31431 容器逃逸☆25May 2, 2026Updated 3 months ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- A Go library for generating Java deserialization payloads.☆152Sep 9, 2024Updated last year
- JAVA 安全靶场,IAST 测试用例,JAVA漏洞复现,代码审计,SAST测试用例,安全扫描(主动和被动),JAVA漏洞靶场,RASP测试用例 ; Java Security Testbed, IAST Test Cases, Java Vulnerability R…☆294Apr 29, 2026Updated 3 months ago
- 一个使用golang编写的程序,用于测试Java应用是否受到rmi加载远程类进行代码执行的影响☆24Oct 11, 2023Updated 2 years ago
- 适用于Node.js环境下的Suo5内存马.☆53Mar 20, 2026Updated 4 months ago
- 小蓝本(https://www.xiaolanben.com/) 爬虫的 h_sign 签名JSRPC实现。nodejs 补环境也实现了☆14Apr 30, 2024Updated 2 years ago
- java-web 自动化鉴权绕过☆380Apr 3, 2025Updated last year
- 检测查杀java内存马☆130Dec 5, 2023Updated 2 years ago
- TL-NodeJsShell 是一个为安全专业人员和渗透测试人员设计的综合性 WebShell 管理平台。它提供了一个现代化的 Web 界面,用于管理基于 Node.js 的 Shell,具有内存马注入、命令执行、文件管理和代理支持等高级功能。☆88Dec 12, 2025Updated 7 months ago
- 强化学习 + 端口扫描☆125Feb 23, 2025Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- 帆软bi反序列化漏洞利用工具☆199Mar 23, 2024Updated 2 years ago
- 一款linux 内网渗透辅助工具☆78Jan 31, 2024Updated 2 years ago
- YongYou U8C deserialization file upload exploit tool targeting IPFxxFileService and IFileTrans services☆28Sep 28, 2025Updated 10 months ago
- 遥知是一款Web日志分析工具,适用于Nginx和Apache的请求日志分析。☆20Dec 20, 2024Updated last year
- ☆79Nov 22, 2024Updated last year
- 一款轻量级匹配Sink点的代码审计扫描器,为了帮助红队过程中快速代码审计的小工具☆402Oct 6, 2024Updated last year
- 某软最新公开gadgegt,新加入不出网利用。☆90Sep 6, 2024Updated last year
- 集成了截图 键盘记录 剪贴版功能,用于网络限制场景下的信息搜集☆90May 18, 2024Updated 2 years ago
- Next-generation IaC tools | 下一代基础设施管理工具☆185Jul 25, 2026Updated 2 weeks ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Java CVE Vulnerability Environment☆44Jun 11, 2024Updated 2 years ago
- 利用代理驱动绕过JDBC Attack检测☆145Jun 15, 2025Updated last year
- Leveraging LLM to generate Java deserialization chains☆89Mar 12, 2026Updated 4 months ago
- golang 实现的windows and linux 端口复用工具。☆311Jan 30, 2024Updated 2 years ago
- Fastjson + MySQL 条件下不出网利用测试环境☆51Dec 6, 2025Updated 8 months ago
- 关于内存马的学习研究支持新手从0到1,从内存马原理,内存马植入 内存马检测 到内存马防御与内存马应急以及内存马查杀全系列java内存马/php/.net/c++/python 喜欢可以点个star 后续持续更新☆149Apr 24, 2024Updated 2 years ago
- A tool to assist DLL hijacking via the Havoc GUI☆14Jan 9, 2024Updated 2 years ago
- 《深入JDBC安全:特殊URL构造与不出网反序列化利用技术揭秘》对应研究总结项目 "Deep Dive into JDBC Security: Special URL Construction and Non-Networked Deserialization Explo…☆594Feb 7, 2026Updated 6 months ago
- 弱口令扫描SDK,可作为CLI单独调用☆39Dec 11, 2025Updated 7 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- 内存马查杀工具,尤其针对Agent型,原理是dump出JVM当前的class并进行字节码分析,并加入自动修复的功能☆188May 10, 2023Updated 3 years ago
- 检测域内常见一把梭漏洞,包括:NoPac、ZeroLogon、CVE-2022-26923、PrintNightMare☆80Oct 23, 2023Updated 2 years ago
- 内网综合扫描工具☆42Apr 16, 2024Updated 2 years ago
- 一个IDEA插件:一键收集项目中所有jar包依赖的工具插件。遍历项目目录收集所有jar文件,复制到all-in-one文件夹,并自动添加为项目库。☆55Oct 30, 2025Updated 9 months ago
- 基于go语言的帆软报表漏洞检测工具☆14Sep 4, 2022Updated 3 years ago
- 针对PE文件的分离的攻防对抗工具,红队、研究者的好帮手。目前支持文件头伪装、证书区段感染。A no-kill confrontation tool for the separation of PE files, a good helper for red teams and…☆286Aug 20, 2024Updated last year
- API Highlighter 是一个用于 BurpSuite 的插件,主要用于 web 应用迭代安全测试时高亮指定的新增接口,该插件最初用 Python 编写,现重构为 Java 版本。☆42Feb 19, 2025Updated last year