Stars
🚀Vite+Vue3+Gin拥有AI辅助的基础开发平台,支持TS和JS混用。它集成了JWT鉴权、权限管理、动态路由、显隐可控组件、分页封装、多点登录拦截、资源权限、上传下载、代码生成器、表单生成器和可配置的导入导出等开发必备功能。
GoReplay is an open-source tool for capturing and replaying live HTTP traffic into a test environment in order to continuously test your system with real data. It can be used to increase confidence…
40X/HTTP bypasser in Go. Features: Verb tampering, headers, #bugbountytips, User-Agents, extensions, default credentials...
An ebook reader application supporting PDF, DjVu, EPUB, FB2 and many more formats, running on Cervantes, Kindle, Kobo, PocketBook and Android devices
Syscall Shellcode Loader (Work in Progress)
The most advanced browser fingerprinting library.
Open-source Windows and Office activator featuring HWID, Ohook, KMS38, and Online KMS activation methods, along with advanced troubleshooting.
Algorithms and Data Structures implemented in Go for beginners, following best practices.
Burp extension to evade TLS fingerprinting. Bypass WAF, spoof any browser.
List DTDs and generate XXE payloads using those local DTDs.
Welcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and news.
PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)
Active Directory and Internal Pentest Cheatsheets
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
Server-Side Template Injection and Code Injection Detection and Exploitation Tool
An all-in-one tool to restore/downgrade, save SHSH blobs, and jailbreak legacy iOS devices
JavaWeb MemoryShell Inject/Scan/Killer/Protect Research & Exploring
Automatic SSRF fuzzer and exploitation tool
Nuclei plugin for BurpSuite
A versatile and portable proxy for capturing, manipulating, and replaying HTTP/HTTPS traffic on the go.
dnsx is a fast and multi-purpose DNS toolkit allow to run multiple DNS queries of your choice with a list of user-supplied resolvers.
A fast port scanner written in go with a focus on reliability and simplicity. Designed to be used in combination with other tools for attack surface discovery in bug bounties and pentests
Fast passive subdomain enumeration tool.