Skip to content
View f1ashine's full-sized avatar

Block or report f1ashine

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

纯真 IP 数据库同步仓库(2025 年持续更新中)

JavaScript 193 21 Updated Feb 12, 2025

辅助甲方安全人员巡检网站资产,发现并分析API安全问题

Python 239 17 Updated Jan 20, 2025

Automated Hosting Information Hunting Tool - Windows 主机信息自动化狩猎工具

C# 365 31 Updated Dec 19, 2024

Prompt越狱手册

1,214 121 Updated Dec 17, 2024

一款帮助云租户发现和测试云上风险、增强云上防护能力的综合性开源工具

Go 399 30 Updated Dec 21, 2024

oss存储桶遍历漏洞利用脚本

Python 69 5 Updated Nov 23, 2024

xxl-job内存马

Java 154 12 Updated Jan 26, 2025

一个 CLASS 文件混淆工具,支持方法名/字段名/参数名引用分析和重命名混淆方式,支持字符串提取/AES加密运行时解密/整型异或混淆/垃圾代码花指令混淆/等方式,支持方法和字段的隐藏,支持INVOKE指令改反射调用,配置简单,容易上手

Java 191 18 Updated Jan 27, 2025

CVE-2022-25845(fastjson1.2.80) exploit in Spring Env!

Java 81 9 Updated Nov 7, 2024

哥斯拉Hikvision综合安防后渗透插件,运行中心/web前台/MinIO 配置提取(解密)重置密码,还原密码。

Java 118 9 Updated Oct 8, 2024

DockerApiRCE

197 16 Updated Oct 22, 2024

收集整理漏洞EXP/POC,大部分漏洞来源网络,目前收集整理了1400多个poc/exp,长期更新。

4,840 1,059 Updated Feb 6, 2025

This tool leverages the Process Forking technique using the RtlCreateProcessReflection API to clone the lsass.exe process. Once the clone is created, it utilizes MINIDUMP_CALLBACK_INFORMATION callb…

C++ 185 27 Updated Oct 19, 2024

🧡 Follow your favorites in one inbox

TypeScript 22,546 941 Updated Feb 13, 2025

通过Dump内存读取ToDesk设备代码、连接密码

207 21 Updated Sep 9, 2024

4个 .soap 版本的WebShell(持续更新维护),优点:可以运行于子目录,突破了过去只能运行于根目录的限制。4个脚本分别支持调用cmd.exe/哥斯拉/冰蝎/天蝎 客户端。

212 13 Updated Feb 5, 2025

proof-of-concept for generating Java deserialization payload | Proxy MemShell

Java 183 23 Updated Jun 8, 2024

#1 Locally hosted web application that allows you to perform various operations on PDF files

Java 49,823 4,111 Updated Feb 13, 2025

Notes about attacking Jenkins servers

Python 2,029 333 Updated Jul 10, 2024

A rouge mysql server supports reading files from most mysql libraries of multiple programming languages.

Go 702 80 Updated Dec 2, 2022

SecGPT网络安全大模型

Python 2,087 280 Updated May 8, 2024

C2-下一代RAT

350 39 Updated Aug 10, 2024

[漏洞复现] 全球首款利用PHP默认环境(XAMPP)的CVE-2024-4577 PHP-CGI RCE 漏洞 EXP。

Python 128 32 Updated Jul 21, 2024

Jar Obfuscator - 一个 JAR/CLASS 字节码混淆工具,支持包名/类名/方法名/字段名/参数名引用分析和重命名混淆方式,支持字符串加密/整型异或混淆/垃圾代码花指令混淆/等方式,支持方法和字段的隐藏,支持 NATIVE 层的 JVMTI 代码加密,配置简单,文档教程齐全,容易上手

Java 352 35 Updated Aug 7, 2024

DecryptTools-综合解密

1,081 113 Updated Sep 30, 2024

A tool to help you intercept encrypted APIs in iOS or Android apps

JavaScript 266 35 Updated Aug 23, 2024

绕过瑞数waf的动态验证机制,实现请求包重放,理论支持不同网站环境使用,如网页、小程序、APP等。

Python 206 32 Updated Oct 23, 2024

🤖 Kill The Protected Process 🤖

Rust 436 62 Updated May 29, 2024

基于 OPSEC 的 CobaltStrike 后渗透自动化链

419 41 Updated Mar 11, 2024

用java实现构造openwire协议,利用activeMQ < 5.18.3 RCE 回显利用 内存马注入

Java 262 17 Updated Nov 20, 2023
Next