基于 docsify 快速部署 Awesome-POC 中的漏洞文档
一个攻防知识仓库 Red Teaming and Offensive Security
程序员在家做饭方法指南。Programmer's guide about how to cook at home (Simplified Chinese only).
w3af: web application attack and audit framework, the open source web vulnerability scanner.
Empire is a PowerShell and Python post-exploitation agent.
My musings with PowerShell
Guidance for mitigation web shells. #nsacyber
K8工具合集(内网渗透/提权工具/远程溢出/漏洞利用/扫描工具/密码破解/免杀工具/Exploit/APT/0day/Shellcode/Payload/priviledge/BypassUAC/OverFlow/WebShell/PenTest) Web GetShell Exploit(Struts2/Zimbra/Weblogic/Tomcat/Apache/Jboss/DotNetN…
PENTEST-WIKI is a free online security knowledge library for pentesters / researchers. If you have a good idea, please share it with others.
The legacy Exploit Database repository - New repo located at
Information Protection & OSINT resources | 一个关于数字隐私搜集、保护、清理集一体的方案,外加开源信息收集(OSINT)对抗
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, se…
A collection of various awesome lists for hackers, pentesters and security researchers
A powerful and open-source toolkit for hackers and security automation - 安全行业从业者自研开源扫描器合辑
Nishang - Offensive PowerShell for red team, penetration testing and offensive security.