php code audit for cms vulnerabilities / 代码审计,对一些大型cms漏洞的复现研究,更新源码和漏洞exp
☆279Dec 12, 2018Updated 7 years ago
Alternatives and similar repositories for PHP-code-audit
Users that are interested in PHP-code-audit are comparing it to the libraries listed below
Sorting:
- 记录自己对《代码审计》的理解和总结,对危险函数的深入分析以及在p牛的博客和代码审计圈的收获☆980Oct 8, 2018Updated 7 years ago
- 该项目用来记录,我用来练手的PHP代码审计项目。☆192Feb 15, 2019Updated 7 years ago
- 代码审计相关的一 些知识☆421Jun 25, 2024Updated last year
- PHP代码审计分段讲解☆1,721Aug 29, 2022Updated 3 years ago
- 一个关于PHP的代码审计项目☆1,914Sep 17, 2019Updated 6 years ago
- Code-Audit-Challenges☆991Nov 17, 2018Updated 7 years ago
- 1000个PHP代码审计案例(2016.7以前乌云公开漏洞)☆1,109Jul 26, 2016Updated 9 years ago
- python安全和代码审计相关资料收集 resource collection of python security and code review☆1,352Aug 6, 2020Updated 5 years ago
- 关于ThinkPHP框架的历史漏洞分析集合☆1,122Jan 18, 2020Updated 6 years ago
- 总结一些php代码审计ctf练习题☆180Sep 6, 2018Updated 7 years ago
- CMS漏洞测试用例集合☆1,765Dec 20, 2018Updated 7 years ago
- 源代码漏洞の审计☆828Jul 2, 2024Updated last year
- 常见漏洞整理和代码审计 Vulneraility☆32Sep 11, 2018Updated 7 years ago
- 代码审计知识点整理-php☆99Jun 19, 2020Updated 5 years ago
- 瓶颈渗透,web渗透,red红队,fuzz param,注释,js字典,ctf☆717Jul 20, 2022Updated 3 years ago
- 对目标域名进行快速的存活扫描、简单的指纹识别、目录扫描☆913Dec 8, 2022Updated 3 years ago
- BCS(北京网络安全大会)2019 红队行动会议重点内容☆819Sep 4, 2019Updated 6 years ago
- Collect JSP webshell of various implementation methods. 梳理和发现的JSP Webshell各种姿势☆1,405Jan 18, 2022Updated 4 years ago
- 文件变化实时监控工具(代码审计/黑盒/白盒审计辅助工具)☆785Feb 23, 2025Updated last year
- PocHubs是为了整合网上知名开源框架的漏洞详细和POC☆230Jun 19, 2019Updated 6 years ago
- 用于辅助安全工程师漏洞挖掘、测试、复现,集合了mock、httplog、dns tools、xss,可用于测试各类无回显、无法直观判断或特定场景下的漏洞。☆866Jul 21, 2019Updated 6 years ago
- Java安全相关的漏洞和技术demo,原生Java、Fastjson、Jackson、Hessian2、XML反序列化漏洞利用和Spring、Dubbo、Shiro、CAS、Tomcat、RMI、Nexus等框架\中间件\功能的exploits以及Java Security…☆2,693Mar 14, 2024Updated 2 years ago
- 从wooyun中提取的payload,以及burp插件☆841Jun 17, 2022Updated 3 years ago
- KunLun-M是一个完全开源的静态白盒扫描工具,支持PHP、JavaScript的语义扫描,基础安全、组件安全扫描,Chrome Ext\Solidity的基础扫描。☆2,382Jan 16, 2026Updated 2 months ago
- 360/0Kee-Team/crawlergo动态爬虫结合长亭XRAY扫描器的被动扫描功能☆1,183Nov 10, 2021Updated 4 years ago
- Java web common vulnerabilities and security code which is base on springboot and spring security☆2,658Dec 2, 2024Updated last year
- MSSQL注入提权,bypass的一些总结☆737Jun 25, 2024Updated last year
- 自动扫描内网常见sql、no-sql数据库脚本(mysql、mssql、oracle、postgresql、redis、mongodb、memcached、elasticsearch),包含未授权访问及常规弱口令检测☆568Dec 1, 2017Updated 8 years ago
- 日常src平台域名收集☆594Jul 11, 2019Updated 6 years ago
- Burp被动扫描流量转发插件☆1,460Jun 17, 2024Updated last year
- An exquisite dns&http log server for verify SSRF/XXE/RFI/RCE vulnerability☆470Sep 16, 2023Updated 2 years ago
- ServerScan一款使用Golang开发的高并发网络扫描、服务探测工具。☆1,634Jun 16, 2024Updated last year
- 免杀webshell无限生成工具☆1,288Apr 3, 2020Updated 5 years ago
- CTF题目收集☆146Sep 12, 2018Updated 7 years ago
- xray社区高级版证书生成,仅供学习研究,正常使用请支持正版。removed due to Chaitin requirements & support to version 1.4.4 & learning purpose☆444Nov 11, 2020Updated 5 years ago
- Getting started with java code auditing 代码审计入门的小项目☆930Feb 22, 2023Updated 3 years ago
- SRC子域名资产监控☆1,298Jan 14, 2021Updated 5 years ago
- 一个各种方式突破Disable_functions达到命令执行的shell☆1,198Oct 17, 2023Updated 2 years ago
- 增强版WeblogicScan、检测结果更精确、插件化、添加CVE-2019-2618,CVE-2019-2729检测,Python3支持☆967Jun 16, 2024Updated last year