lal0ne / vulnerabilityLinks
收集、整理、修改互联网上公开的漏洞POC
☆966Updated 5 months ago
Alternatives and similar repositories for vulnerability
Users that are interested in vulnerability are comparing it to the libraries listed below
Sorting:
- A flexible scanner☆1,271Updated 4 months ago
- 实战沉淀字典☆1,517Updated last month
- xia SQL (瞎注) burp 插件 ,在每个参数后面填加一个单引号,两个单引号,一个简单的判断注入小插件。☆1,200Updated 2 years ago
- WeblogicTool,GUI漏洞利用工具,支持漏洞检测、命令执行、内存马注入、密码解密等(深信服深蓝实验室天威战队强力驱动)☆1,766Updated 2 years ago
- 高危漏洞精准检测与深度利用框架☆1,457Updated 3 years ago
- A Swagger API Exploit☆1,365Updated last year
- A list for Web Security and Code Audit☆1,201Updated last year
- Burpsuite - Route Vulnerable Scanning 递归式被动检测脆弱路径的burp插件☆1,312Updated last year
- Java Vulnerability Exploitation Platform☆1,931Updated this week
- 红队常用命令速查☆1,007Updated 6 months ago
- An integrated BurpSuite vulnerability detection plug-in.☆1,395Updated this week
- Memshell-攻防内存马研究☆923Updated 8 months ago
- OneScan 是一款用于递归目录扫描的 BurpSuite 插件☆1,219Updated 6 months ago
- 为供应链漏洞扫描设计的快速应急响应工具 [快速应急] [漏洞扫描] [端口扫描] [xray2.0进行时] A fast emergency response tool designed for supply chain vulnerability scanning.☆1,144Updated last year
- 面向红队的, 高性能高度自由可拓展的自动化扫描引擎 | A highly controllable and extensionable automated scanning engine for red teams☆1,978Updated 3 weeks ago
- 攻防演练过程中,我们通常会用浏览器访问一些资产,但很多未授权/敏感信息/越权隐匿在已访问接口过html、JS文件等,该插件能让我们发现未授权/敏感信息/越权/登陆接口等。☆1,360Updated last year
- 用于生成各类免杀webshell☆1,238Updated last year
- (持续更新)对网上出现的各种OA、中间件、CMS等漏洞进行整理,主要包括漏洞介绍、漏洞影响 版本以及漏洞POC/EXP等,并且会持续更新。☆513Updated 2 years ago
- POC&EXP仓库、hvv弹药库、Nday、1day☆1,092Updated 3 years ago
- 一款支持自定义的 Java 内存马生成工具|A customizable Java in-memory webshell generation tool.☆2,132Updated 4 months ago
- 记录实战中的各种sql注入绕过姿势☆661Updated 3 years ago
- 一款基于BurpSuite的被动式shiro检测插件☆1,784Updated 3 years ago
- MDUT - Multiple Database Utilization Tools☆2,182Updated 2 years ago
- OA综合利用工具,集合将近20款OA漏洞批量扫描☆1,330Updated 2 years ago
- 一个开源的、开箱即用的漏洞批量验证框架☆896Updated 2 months ago
- heapdump敏感信息查询工具,例如查找 spring heapdump中的密码明文,AK,SK等☆1,431Updated last year
- 一款集成高危漏洞exp的实用性工具☆1,285Updated last year
- domain_hunter的高级版本,SRC挖洞、HW打点之必备!自动化资产收集;快速Title获取;外部工具联动;等等☆2,108Updated last week
- Next generation RedTeam heuristic intranet scanning | 下一代RedTeam启发式内网扫描☆1,114Updated 2 years ago
- Fiora:漏洞PoC框架Nuclei的图形版。快捷搜索PoC、一键运行Nuclei。即可作为独立程序运行,也可作为burp插件使用。☆1,273Updated 6 months ago