lal0ne / vulnerabilityLinks
收集、整理、修改互联网上公开的漏洞POC
☆964Updated 4 months ago
Alternatives and similar repositories for vulnerability
Users that are interested in vulnerability are comparing it to the libraries listed below
Sorting:
- 高危漏洞精准检测与深度利用框架☆1,456Updated 2 years ago
- A flexible scanner☆1,269Updated 3 months ago
- WeblogicTool,GUI漏洞利用工具,支持漏洞检测、命令执行、内存马注入、密码解密等( 深信服深蓝实验室天威战队强力驱动)☆1,756Updated 2 years ago
- Burpsuite - Route Vulnerable Scanning 递归式被动检测脆弱路径的burp插件☆1,306Updated last year
- A Swagger API Exploit☆1,347Updated last year
- An integrated BurpSuite vulnerability detection plug-in.☆1,376Updated last year
- A list for Web Security and Code Audit☆1,179Updated last year
- xia SQL (瞎注) burp 插件 ,在每个参数后面填加一个单引号,两个单引号,一个简单的判断注入小插件。☆1,181Updated 2 years ago
- OneScan 是一款用于递归目录扫描的 BurpSuite 插件☆1,209Updated 5 months ago
- Vulhub Vulnerability Reproduction Designated Platform☆1,840Updated 7 months ago
- 面向红队的, 高性能高度自由可拓展的自动化扫描引擎 | A highly controllable and extensionable automated scanning engine for red teams☆1,945Updated this week
- 一款支持自定义的 Java 内存马生成工具|A customizable Java in-memory webshell generation tool.☆2,111Updated 3 months ago
- 实战沉淀字典☆1,501Updated 2 months ago
- 一个开源的、开箱即用的漏洞批量验证框架☆897Updated last month
- MDUT - Multiple Database Utilization Tools☆2,175Updated 2 years ago
- POC&EXP仓库、hvv弹药库、Nday、1day☆1,089Updated 3 years ago
- 红队常用命令速查☆1,005Updated 5 months ago
- domain_hunter的高级版本,SRC挖洞、HW打点之必备!自动化资产收集;快速Title获取;外部工具联动;等等☆2,108Updated last week
- Fiora:漏洞PoC框架Nuclei的图形版。快捷搜索PoC、一键运行Nuclei。即可作为独立程序运行,也可作为burp插件使用。☆1,265Updated 5 months ago
- OA综合利用工具,集合将近20款OA漏洞批量扫描☆1,332Updated 2 years ago
- Memshell-攻防内存马研究☆913Updated 7 months ago
- 为供应链漏洞扫描设计的快速应急响应工具 [快速应急] [漏洞扫描] [端口扫描] [xray2.0进行时] A fast emergency response tool designed for supply chain vulnerability scanning.☆1,137Updated last year
- 一款针对Vcenter的综合利用工具,包含目前最主流的CVE-2021-21972、CVE-2021-21985以及CVE-2021-22005、One Access的CVE-2022-22954、CVE-2022-22972/31656以及log4j,提供一键上传webs…☆1,449Updated last year
- Poc and Exp☆1,207Updated 8 months ago
- heapdump敏感信息查询工具,例如查找 spring heapdump中的密码明文,AK,SK等☆1,427Updated last year
- Next generation RedTeam heuristic intranet scanning | 下一代RedTeam启发式内网扫描☆1,111Updated 2 years ago
- 攻防演练过程中,我们通常会用浏览器访问一些资产,但很多未授权/敏感信息/越权隐匿在已访问接口过html、JS文件等,该插件能让我们发现未授权/敏感信息/越权/登陆接口等。☆1,340Updated last year
- 用于生成各类免杀webshell☆1,232Updated last year
- 一款基于BurpSuite的被动式shiro检测插件☆1,781Updated 2 years ago
- 记录实战中的各种sql注入绕过姿势☆662Updated 3 years ago