一些漏洞检测/利用脚本
☆44Dec 5, 2019Updated 6 years ago
Alternatives and similar repositories for POC
Users that are interested in POC are comparing it to the libraries listed below
Sorting:
- ☆20Dec 3, 2020Updated 5 years ago
- ☆87Feb 27, 2017Updated 9 years ago
- 一款基于webshell命令执行功能实现的GUI webshell管理工具,支持流量加密☆218Jun 4, 2021Updated 4 years ago
- Confluence(<install-directory>/confluence/WEB-INF/)文件读取漏洞☆17Sep 2, 2019Updated 6 years ago
- LANGZI_SRC_安全巡航 是一款集成漏扫,验证,资产监控,自动复现并且生成结果表报的工具,实现初衷是为了帮助白帽子在SRC中节约时间成本的自动化工具。☆14Jul 7, 2019Updated 6 years ago
- shiro_rememberme 反序列化漏洞 利用EXP☆30Nov 22, 2019Updated 6 years ago
- 轻量级漏洞验证和利用框架☆32May 10, 2022Updated 3 years ago
- SEC分布式资产扫描系统☆12Dec 8, 2022Updated 3 years ago
- WeblogicScanLot系列,Weblogic漏洞批量检测工具,V2.2☆184Aug 1, 2020Updated 5 years ago
- c# 读取登录过本机的登录失败或登录成功(4624,4625)的所有计算机信息,在内网渗透中快速定位运维管理人员。☆206Oct 15, 2019Updated 6 years ago
- ThinkCMF 框架上的任意内容包含漏洞☆36Oct 28, 2019Updated 6 years ago
- java web 压缩文件 安全 漏洞☆20Mar 17, 2020Updated 5 years ago
- AggressorScript-RunDumpHash☆19Oct 9, 2019Updated 6 years ago
- 常用漏洞一键化自动扫描,解决平时渗透测试中的重复工作~☆101Dec 2, 2019Updated 6 years ago
- decrypt rdp credentials to password using mimikatz.☆28Dec 18, 2020Updated 5 years ago
- CNVD-C-2019-48814 Weblogic wls9_async_response 反序列化利用工具☆36Jun 3, 2019Updated 6 years ago
- ******本软件仅限用于学习交流禁止用于任何非法行为****** 本版本支持elasticsearch java语言远程命令执行及文件上传 elasticsearchgroov语言远程命令执行及文件上传 struts2-005、struts2-009、struts2-01…☆108Oct 22, 2017Updated 8 years ago
- Redis RCE 的几种方法☆90Jun 5, 2024Updated last year
- ShellCode Loader for MSF and Cobalt Strike☆56May 7, 2024Updated last year
- nmap默认的scripts和自己收集的一些scripts☆21Feb 22, 2018Updated 8 years ago
- 用来存放平时写的一些net内存马,仅用于练手,需要可以自行修改☆89May 3, 2022Updated 3 years ago
- MSSQL注入提权,bypass的一些总结☆737Jun 25, 2024Updated last year
- xray社区高级版证书生成,支持到 1.2.0 版本☆35Nov 21, 2020Updated 5 years ago
- Nexus Repository Manager3 - 远程执行代码漏洞回显payload☆13Sep 29, 2020Updated 5 years ago
- The burp extension to forward the request☆10Oct 21, 2024Updated last year
- ☆11Nov 12, 2019Updated 6 years ago
- 把jsp的cmdshell升级为冰蝎一句话☆11Sep 23, 2019Updated 6 years ago
- Windows Antivirus Evasion and Memory Injection☆12Feb 19, 2022Updated 4 years ago
- CVE-2021-4034 for single commcand☆10May 31, 2022Updated 3 years ago
- SharpAddDomainMachine☆69Oct 12, 2021Updated 4 years ago
- 钓鱼上线后渗透工具☆132Feb 19, 2023Updated 3 years ago
- POC-T强化版本 POC-S , 用于红蓝对抗中快速验证Web应用漏洞, 对功能进行强化以及脚本进行分类添加,自带dnslog等, 平台补充来自vulhub靶机及其他开源项目的高可用POC☆357Mar 12, 2020Updated 5 years ago
- Shiro_721 exp 纯手工实现Padding Oracle整个过程☆67Nov 20, 2019Updated 6 years ago
- 通达OA<v11.5&v11.6版本RCE Exploit☆26Aug 23, 2020Updated 5 years ago
- Spring Boot Actuator未授权访问【XXE、RCE】单/多目标检测☆522May 21, 2020Updated 5 years ago
- 一个Burp插件,实现用AES算法透明加密原版菜刀Caidao.exe与服务器端交互的http数据流☆79Jan 19, 2019Updated 7 years ago
- 识别网站cms指纹☆12May 19, 2019Updated 6 years ago
- fastjson_rce工具,不用搭建HTTP服务,不受JDK版本限制☆10Nov 25, 2019Updated 6 years ago
- Alternative Mimikatz LSASS DUMPER☆14Apr 2, 2020Updated 5 years ago