Hello, Attack Surface Scan, BurpSuite完全被动扫描插件,不主动发送任何请求,适合挂机使用。
☆24Jul 10, 2022Updated 3 years ago
Alternatives and similar repositories for ASScan
Users that are interested in ASScan are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- 检测host头攻击的Burpsuite被动扫描插件,Burpsuite passive scanning plugin responsible for detecting host header attack☆11Apr 28, 2023Updated 2 years ago
- Linux Post-Exploitation tools wrapper☆20Mar 21, 2023Updated 3 years ago
- Dubbo反序列化测试工具☆15Feb 21, 2020Updated 6 years ago
- Curated UTF-8 URL-encoded character dictionary for injection testing, fuzzing, and bypass techniques against web applications and APIs, f…☆13Sep 20, 2021Updated 4 years ago
- 一款被动扫描ssrf的burpsuite插件☆20Dec 30, 2022Updated 3 years ago
- CVE-2023-28434 nuclei templates☆33Mar 23, 2023Updated 3 years ago
- ThinkPHP3和5日志扫描工具,提供命令行版和BurpSuite插件版,尽可能全的发掘网站日志信息☆10Feb 17, 2021Updated 5 years ago
- jmx未授权访问 弱口令批量检测 GUI工具☆31Apr 28, 2023Updated 2 years ago
- Many yaml scanner plugin parser [nuclei-template, xray-poc, ez-poc] - for Python☆13Mar 27, 2022Updated 3 years ago
- Windows Reverse TCP Shell for Hacking and Pentesting☆24Aug 13, 2024Updated last year
- A proof-of-concept Node.js ransomware☆21Mar 27, 2022Updated 3 years ago
- The offical exploit for Pandora v7.0NG Post-auth Remote Code Execution CVE-2019-20224☆14Jan 10, 2020Updated 6 years ago
- 在学习Java反序列化漏洞的过程中,用来理解Java RMI程序的执行流程,演示如何攻击Java RMI程序的几个示例。☆11May 6, 2020Updated 5 years ago
- 一款辅助探测Orderby注入漏洞的BurpSuite插件☆25Oct 19, 2021Updated 4 years ago
- Deploy an "illegal" SOC to manage vulnerabilities on your city servers in minutes.☆20Dec 8, 2022Updated 3 years ago
- 一款扫描js中敏感api的burp插件☆38Aug 30, 2023Updated 2 years ago
- An exotic service bruteforce tool.☆13Apr 12, 2025Updated 11 months ago
- CVE-2017-13156-Janus复现☆13Sep 7, 2020Updated 5 years ago
- 常见漏洞环境dockerfile☆18Jan 13, 2021Updated 5 years ago
- Claude Code plugin for Java JAR security audit — 基于 jar-analyzer 的 Claude Code 安全审计插件,构建数据库,AI 深入分析☆78Updated this week
- 基于AI的BurpSuite漏洞分析插件☆11Sep 21, 2023Updated 2 years ago
- Goal Go Red-Team 工具类☆44Jan 15, 2025Updated last year
- ARL 2.6.2-docker国内环境快速部署☆16Sep 25, 2024Updated last year
- An HTTP request smuggling scanner designed to work at scale☆25Oct 2, 2022Updated 3 years ago
- Sifter - All purpose penetration testing op-center☆82Nov 23, 2022Updated 3 years ago
- 本软件首先集成危害性较大框架和部分主流cms的rce(无需登录,或者登录绕过执行rce)和反序列化(利用链简单)。傻瓜式导入url即可实现批量getshell。批量自动化测试。例如:Thinkphp,Struts2,weblogic。出现的最新漏洞进行实时跟踪并且更新例如:…☆17May 22, 2022Updated 3 years ago
- 提供一个Golang 的bypass AV 思路。☆79Jul 6, 2023Updated 2 years ago
- 一个提供查询 TXT 记录的 DNS 服务利用工具。例如 :可配合 Windows 下的 certutil 工具传输小文件(64KB)☆37Dec 31, 2021Updated 4 years ago
- The long shadow to emerge as other Git repositories☆18Feb 25, 2026Updated 3 weeks ago
- 收录go语言编写的项目、框架和组件出现的cve,或者一些相关的利用方式的文章☆48Nov 23, 2022Updated 3 years ago
- BurpSuite 插件,自动格式化 response 中的 json/jsonp 数据,同时也会对 Unicode 进行解码☆10Feb 19, 2020Updated 6 years ago
- NetBIOS scanning tool written in c#☆70Aug 6, 2021Updated 4 years ago
- 网络安全开源图书三部曲☆18Jan 3, 2026Updated 2 months ago
- 基于奇安信的鹰图系统API的数据导出到excel的python程序☆30Apr 16, 2022Updated 3 years ago
- 高性能WEB指纹识别打标工具☆32Feb 4, 2023Updated 3 years ago
- Bypass国内主流杀软☆43May 9, 2022Updated 3 years ago
- sonarbyte is a simple and fast subdomain scanner written in go to extract subdomain from Rapid7's DNS Database using omnisint's api.☆27Sep 4, 2022Updated 3 years ago
- Gofrette is a reverse shell payload developed in Golang that bypasses Windows defender and many others anti-virus.☆40Oct 29, 2022Updated 3 years ago
- golang计划任务通用服务☆13Mar 5, 2025Updated last year