weizn's repos on GitHub
1 watchers
Penetration_Testing_POC
渗透测试有关的POC、EXP、脚本、提权、小工具等---About penetration-testing python-script poc getshell csrf xss cms php-getshell domainmod-xss csrf-webshell cobub-razor cve rce sql sql-poc poc-exp bypass oa-getshell cve-cms
1 watchers
python-a2a
Python A2A is a powerful, easy-to-use library for implementing Google's [Agent-to-Agent (A2A) protocol](https://google.github.io/A2A/). It enables seamless communication between AI agents, creating interoperable agent ecosystems that can collaborate to solve complex problems.
Python · 0 watchers
AngelSword
Python3编写的CMS漏洞检测框架
0 watchers
Antenna
Antenna是58同城安全团队打造的一款辅助安全从业人员验证网络中多种漏洞是否存在以及可利用性的工具。其基于带外应用安全测试(OAST)通过任务的形式,将不同漏洞场景检测能力通过插件的形式进行集合,通过与目标进行out-bind的数据通信方式进行辅助检测。
0 watchers
bert4keras
keras implement of transformers for humans
0 watchers
CobaltStrikeScan
Scan files or process memory for CobaltStrike beacons and parse their configuration
0 watchers
cookie-injecting-tools
A chrome extension ,cookie injecting tool includeing injecting ,editing ,adding ,removeing cookies.
Python · 0 watchers
CVE-2017-0199
Exploit toolkit CVE-2017-0199 - v4.0 is a handy python script which provides pentesters and security researchers a quick and effective way to test Microsoft Office RCE. It could generate a malicious RTF/PPSX file and deliver metasploit / meterpreter / other payload to victim without any complex configuration.
Python · 0 watchers
CVE-2017-8759
Exploit toolkit CVE-2017-8759 - v1.0 is a handy python script which provides pentesters and security researchers a quick and effective way to test Microsoft .NET Framework RCE. It could generate a malicious RTF file and deliver metasploit / meterpreter / other payload to victim without any complex configuration.
0 watchers
CVE-2020-1472
PoC for Zerologon - all research credits go to Tom Tervoort of Secura
0 watchers
defender-control
An open-source windows defender manager. Now you can disable windows defender permanently.
0 watchers
donut
Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs them with parameters
0 watchers
DSVPWA
Damn Simple Vulnerable Python Web Application
0 watchers
easy-rl
强化学习中文教程,在线阅读地址:https://datawhalechina.github.io/easy-rl/
0 watchers
encrypted-dns
Configuration profiles for DNS HTTPS and DNS over TLS for iOS 14 and MacOS Big Sur
Perl · 0 watchers
EQGRP
Decrypted content of eqgrp-auction-file.tar.xz
0 watchers
Erebus
CobaltStrike后渗透测试插件
0 watchers
esper
Esper Complex Event Processing, Streaming SQL and Event Series Analysis
0 watchers
Fanzhi
《FanZhi-攻击与反制的艺术》
C++ · 0 watchers
firmware-mod-kit
Automatically exported from code.google.com/p/firmware-mod-kit
Perl · 0 watchers
fwknop
Single Packet Authorization > Port Knocking
0 watchers
grok-1
Grok open release
0 watchers
IDS_INSTALL
suricata + PF_RING + hiredis + hyperscan 自动化安装脚本
0 watchers
jdwp-shellifier
修改利用方式为通过对Sleeping的线程发送单步执行事件,达成断点,从而可以直接获取上下文、执行命令,而不用等待断点被击中。
0 watchers
JNDIExploit
A malicious LDAP server for JNDI injection attacks
0 watchers
juice-shop
OWASP Juice Shop: Probably the most modern and sophisticated insecure web application
0 watchers
keras-rl2
Reinforcement learning with tensorflow 2 keras
Python · 0 watchers
keras-tcn
Keras Temporal Convolutional Network.
0 watchers
labelImg
🖍️ LabelImg is a graphical image annotation tool and label object bounding boxes in images
0 watchers
llvm-utils
LLVM/Clang for Visual Studio 2022, 2019, 2017, 2015, 2013, 2012 and 2010
0 watchers
LNKUp
Generates malicious LNK file payloads for data exfiltration
C · 0 watchers
MemoryModule
Library to load a DLL from memory.
0 watchers
merlin
Merlin is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in golang.
0 watchers
mhy_exp
Mhy Exp (exploit signed driver)
0 watchers
mimikat_ssp
Security Support Provider Interface
Shell · 0 watchers
mimipenguin
A tool to dump the login password from the current linux user
C · 0 watchers
Mirai-Source-Code
Leaked Mirai Source Code for Research/IoC Development Purposes
0 watchers
nginx
The official NGINX Open Source repository.
0 watchers
nmap-android
Nmap on Android - Makefile/diff/scripts to build it with Android NDK
0 watchers
nuclei
Fast and customizable vulnerability scanner based on simple YAML based DSL.
0 watchers
NucleiTP
自动整合全网Nuclei的漏洞POC,实时同步更新最新POC!
Python · 0 watchers
onlinetools
在线cms识别|旁站|c段|信息泄露|工控|系统|物联网安全|cms漏洞扫描|nmap端口扫描|子域名获取|待续..
0 watchers
osquery-attck
Mapping the MITRE ATT&CK Matrix with Osquery
0 watchers
PowerSploit
PowerSploit - A PowerShell Post-Exploitation Framework
0 watchers
PPLdump
Dump the memory of a PPL with a userland exploit
JavaScript · 0 watchers
pwnjs
A Javascript library for browser exploitation
0 watchers
rdpwrap
RDP Wrapper Library
C · 0 watchers
red-black-tree
Generic red-black tree library (by Julienne Walker).
0 watchers
Red-Teaming-Toolkit
A collection of open source and commercial tools that aid in red team operations.
0 watchers
Responder
Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv2/LMv2, Extended Security NTLMSSP and Basic HTTP authentication.
Jupyter Notebook · 0 watchers
sentinel-attack
Repository of sentinel alerts and hunting queries leveraging sysmon and the MITRE ATT&CK framework
Shell · 0 watchers
setup-ipsec-vpn
Scripts to build your own IPsec VPN server, with IPsec/L2TP and Cisco IPsec on Ubuntu, Debian and CentOS
Python · 0 watchers
shadowbroker
The Shadow Brokers "Lost In Translation" leak
0 watchers
SharpADWS
Active Directory reconnaissance and exploitation for Red Teams via the Active Directory Web Services (ADWS).
0 watchers
shovel
Docker容器逃逸工具(Docker Escape Tools)
0 watchers
SigThief
Stealing Signatures and Making One Invalid Signature at a Time