knownsec / Kunyu
Kunyu, more efficient corporate asset collection
☆1,025Updated 3 months ago
Alternatives and similar repositories for Kunyu:
Users that are interested in Kunyu are comparing it to the libraries listed below
- 一款基于BurpSuite的被动式shiro检测插件☆1,733Updated 2 years ago
- domain_hunter的高级版本,SRC挖洞、HW打点之必备!自动化资产收集;快速Title获取;外部工具联动;等等☆2,043Updated this week
- 一款红队在大量的资产中存活探测与重点攻击系统指纹探测工具☆1,654Updated last year
- netspy是一款快速探测内网可达网段工具(深信服深蓝实验室天威战队强力驱动)☆2,080Updated last year
- A simple FOFA client written in JavaFX. Made by WgpSec, Maintained by f1ashine.☆1,684Updated 10 months ago
- MDUT - Multiple Database Utilization Tools☆2,109Updated last year
- EHole(棱洞)3.0 重构版-红队重点攻击系统指纹探测工具☆3,260Updated last year
- Glass是一款针对资产列表的快速指纹识别工具,通过调用Fofa/ZoomEye/Shodan/360等api接口快速查询资产信息并识别重点资产的指纹,也可针对IP/IP段或资产列表进行快速的指纹识别。☆994Updated 3 years ago
- 红/蓝队环境自动化部署工具 | Red/Blue team environment automation deployment tool☆1,925Updated 8 months ago
- fast scan for redtools☆865Updated 3 years ago
- 大宝剑-边界资产梳理工具(红队、蓝队、企业组织架构、子域名、Web资产梳理、Web指纹识别、ICON_Hash资产匹配 )☆910Updated 3 years ago
- shiro反序列化漏洞综合利用,包含(回显执行命令/注入内存马)修复原版中NoCC的问题 https://github.com/j1anFen/shiro_attack☆2,196Updated last year
- 这是一个用于IP和域名碰撞匹配访问的小工具,旨意用来匹配出渗透过程中需要绑定hosts才能访问的弱主机或内部系统。☆1,155Updated 6 years ago
- OA综合利用工具,集合将近20款OA漏洞批量扫描☆1,308Updated last year
- A flexible scanner☆1,247Updated last month
- Burp被动扫描流量转发插件☆1,434Updated 10 months ago
- 漏洞批量验证框架☆855Updated 8 months ago
- 【懒人神器】一款图形化、批量采集url、批量对采集的url进行各种nday检测的工具。可用于src挖掘、cnvd挖掘、0day利用、打造自己的武器库等场景。可以批量利用Actively Exploited Atlassian Confluence 0Day CVE-2022…☆1,193Updated 2 years ago
- Fiora:漏洞PoC框架Nuclei的图形版。快捷搜索PoC、一键运行Nuclei。即可作为独立程序运行,也可作为burp插件使用。☆1,218Updated 11 months ago
- POC&EXP仓库、hvv弹药库、Nday、1day☆1,045Updated 2 years ago
- 红队常用命令速查☆986Updated 2 months ago
- Burp suite 分块传输辅助插件☆1,972Updated 3 years ago
- 针对 Acunetix AWVS扫描器开发的批量扫描脚本,支持log4j漏洞、SpringShell、SQL注入、XSS、弱口令等专项,支持联动xray、burp、w13scan等被动批量☆1,199Updated 8 months ago
- CobaltStrike后渗透测试插件☆1,521Updated 3 years ago
- Bypass firewall for traffic forwarding using webshell☆1,401Updated 3 years ago
- A Swagger API Exploit☆1,269Updated 11 months ago
- 面向红队的, 高度可控可拓展的自动化扫描引擎 | A highly controllable and scalable automated scanning engine for red teams☆1,704Updated 3 weeks ago
- 用于生成各类免杀webshell☆1,163Updated last year
- 实时监控github上新增的cve、自定义关键字、安全工具更新、大佬仓库监控,并多渠道推送通知☆1,173Updated 2 years ago
- 用于记录内网渗透(域渗透)学习 :-)☆1,167Updated 4 years ago