此项目用于收集渗透测试中,BurpSuite中好用的插件
☆27Nov 18, 2021Updated 4 years ago
Alternatives and similar repositories for BurpExtenderCollect
Users that are interested in BurpExtenderCollect are comparing it to the libraries listed below
Sorting:
- 自己总结的渗透测试思维导图☆22Jun 6, 2021Updated 4 years ago
- Burpsuite被动扫描插件☆12Dec 11, 2021Updated 4 years ago
- 检测host头攻击的Burpsuite被动扫描插件,Burpsuite passive scanning plugin responsible for detecting host header attack☆11Apr 28, 2023Updated 2 years ago
- 一些POC、EXP☆11Nov 4, 2019Updated 6 years ago
- an exploit tool for Thinkcmf RCE vulnerable☆14Feb 5, 2020Updated 6 years ago
- 内网渗透、工具开发、二进制等相关笔记☆12Mar 26, 2023Updated 2 years ago
- OpenFire 管理后台账号密码解密☆30Dec 15, 2020Updated 5 years ago
- gophish批量操作,适用于大批量钓鱼演练☆31Apr 5, 2021Updated 4 years ago
- PHP-Code-Audit☆13Aug 23, 2021Updated 4 years ago
- 一个BurpSuite插件,想法是简化日常挖洞流程☆14Jun 28, 2022Updated 3 years ago
- 自己写的Alfred插件,包含时间转换/编解码/hash/ip查询等常用功能☆13Sep 2, 2022Updated 3 years ago
- 反编译微信小程序, 支持分包☆13Jun 21, 2019Updated 6 years ago
- 一个常用编码加解密的懒人工具,自动识别,尝试转换所有类型,包括html实体化,base64,base32,32位md5,16位md5,hash,\x,0x等十六进制格式,url编码...☆15Feb 1, 2022Updated 4 years ago
- payloads☆15Mar 17, 2021Updated 4 years ago
- 未授权批量检测脚本☆14Oct 9, 2019Updated 6 years ago
- 一个Burpsuite插件,用于检测隐藏的XSS☆40Mar 31, 2019Updated 6 years ago
- 适用于burpsuite渗透工具的多类型恶意文件代码、漏洞测试payload、脚本代码快速获取复制的在线辅助插件。☆65Jan 31, 2022Updated 4 years ago
- 一个高速的隐蔽隧道,伪装TCP流量为SMTP电子邮件通信以绕过深度包检测(DPI)防火墙。☆47Feb 23, 2026Updated last week
- 记录一些国外漏洞赏金猎人的挖洞技巧和一些有意思的东西☆39Dec 4, 2019Updated 6 years ago
- 解答开发关于安全漏洞的常见问题☆41Apr 30, 2020Updated 5 years ago
- masscan和namp结合实现全端口快速扫描,修改至onetwopunch项目bash脚本☆17Oct 17, 2016Updated 9 years ago
- TeamTNT 挖矿病毒样本备份☆20May 4, 2022Updated 3 years ago
- Burp的JS API接口过滤插件☆127Dec 27, 2023Updated 2 years ago
- 从js文件中提取url等并与Xray联动☆19Jan 30, 2023Updated 3 years ago
- Zentao v16.5 SQL Injection POC☆75Jul 30, 2022Updated 3 years ago
- vBulletin 5.x 未授权远程代码执行漏洞☆21Sep 26, 2019Updated 6 years ago
- 泛微ecology OA系统接口存在数据库配置信息泄露漏洞☆50Jul 13, 2020Updated 5 years ago
- BIE的HMP的B/S端的遠控☆20Jun 25, 2021Updated 4 years ago
- webuploader-v-0.1.15未授权-任意文件上传☆52Sep 6, 2019Updated 6 years ago
- CVE-2022-37042 Zimbra Auth Bypass leads to RCE☆30Dec 9, 2022Updated 3 years ago
- 若依后台定时任务一键利用☆17Apr 14, 2022Updated 3 years ago
- 创建一个克隆隐藏的管理员账号/Create a Clone Hidden Administrator Account☆22Aug 28, 2019Updated 6 years ago
- 用于WebLogic poc及exp测试的基础脚本,后续将集成各版本poc库☆94Nov 4, 2020Updated 5 years ago
- 后台插件getshell☆50Dec 4, 2021Updated 4 years ago
- X安蜜罐用的一些存在JSonp劫持的API☆93May 28, 2021Updated 4 years ago
- 禅道研发项目管理系统`misc-captcha-user`认证绕过后台命令注入漏洞☆108Apr 24, 2023Updated 2 years ago
- YYScan是一款Golang编写的模块化工具,速度很奈斯,主要功能有端口扫描、网站title识别、网站指纹识别、ssh暴力破解、mysql暴力破解。☆35Oct 18, 2021Updated 4 years ago
- 一款可以检测WEB蜜罐并阻断请求的Chrome插件,能够识别并阻断长亭D-sensor、墨安幻阵的部分溯源api☆55Sep 2, 2020Updated 5 years ago
- plugins.☆25Jun 28, 2020Updated 5 years ago