lal0ne / vulnerabilityLinks
收集、整理、修改互联网上公开的漏洞POC
☆965Updated 4 months ago
Alternatives and similar repositories for vulnerability
Users that are interested in vulnerability are comparing it to the libraries listed below
Sorting:
- A flexible scanner☆1,270Updated 3 months ago
- 高危漏洞精准检测与深度利用框架☆1,457Updated 2 years ago
- WeblogicTool,GUI漏洞利用工具,支持漏洞检测、命令执行、内存马注入、密码解密等( 深信服深蓝实验室天威战队强力驱动)☆1,762Updated 2 years ago
- An integrated BurpSuite vulnerability detection plug-in.☆1,380Updated last year
- 实战沉淀字典☆1,506Updated last week
- A Swagger API Exploit☆1,349Updated last year
- 一款支持自定义的 Java 内存马生成工具|A customizable Java in-memory webshell generation tool.☆2,121Updated 3 months ago
- Burpsuite - Route Vulnerable Scanning 递归式被动检测脆弱路径的burp插件☆1,309Updated last year
- A list for Web Security and Code Audit☆1,186Updated last year
- OneScan 是一款用于递归目录扫描的 BurpSuite 插件☆1,209Updated 5 months ago
- 面向红队的, 高性能高度自由可拓展的自动化扫描引擎 | A highly controllable and extensionable automated scanning engine for red teams☆1,964Updated this week
- (持续更新)对网上出现的各种OA、中间件、CMS等漏洞进行整理,主要包括漏洞介绍、漏洞影响版本以及漏洞POC/EXP等,并且会持续更新。☆514Updated 2 years ago
- xia SQL (瞎注) burp 插 件 ,在每个参数后面填加一个单引号,两个单引号,一个简单的判断注入小插件。☆1,186Updated 2 years ago
- Java Vulnerability Exploitation Platform☆1,876Updated last week
- 一款针对Vcenter的综合利用工具,包含目前最主流的CVE-2021-21972、CVE-2021-21985以及CVE-2021-22005、One Access的CVE-2022-22954、CVE-2022-22972/31656以及log4j,提供一键上传webs…☆1,452Updated last year
- 红队常用命令速查☆1,006Updated 5 months ago
- 用于生成各类免杀webshell☆1,231Updated last year
- 一个开源的、开箱即用的漏洞批量验证框架☆896Updated last month
- Memshell-攻防内存马研究☆917Updated 8 months ago
- OA综合利用工具,集合将近20款OA漏洞批量扫描☆1,331Updated 2 years ago
- Next generation RedTeam heuristic intranet scanning | 下一代RedTeam启发式内网扫描☆1,112Updated 2 years ago
- heapdump敏感信息查询工具,例如查找 spring heapdump中的密码明文,AK,SK等☆1,428Updated last year
- MDUT - Multiple Database Utilization Tools☆2,179Updated 2 years ago
- POC&EXP仓库、hvv弹药库、Nday、1day☆1,090Updated 3 years ago
- 最好用最智能最可控的目录Fuzz工具 | The most powerful, user-friendly, intelligent, and precise HTTP Fuzzer.☆944Updated last week
- 攻防演练过程中,我们通常会用浏览器访问一些资产,但很多未授权/敏感信息/越权隐匿在已访问接口过html、JS文件等,该插件能让我们发现未授权/敏感信息/越权/登陆接口等。☆1,348Updated last year
- Fiora:漏洞PoC框架Nuclei的图形版。快捷搜索PoC、一键运行Nuclei。即可作为独立程序运行,也可作为burp插件使用。☆1,265Updated 5 months ago
- 为供应链漏洞扫描设计的快速应急响应工具 [快速应急] [漏洞扫描] [端口扫描] [xray2.0进行时] A fast emergency response tool designed for supply chain vulnerability scanning.☆1,141Updated last year
- 记录实战中的各种sql注入绕过姿势☆661Updated 3 years ago
- Poc and Exp☆1,210Updated last week