| zan8in |
afrog 是一款性能卓越、快速稳定、PoC 可定制化的漏洞扫描工具 |
https://github.com/zan8in/afrog |
https://github.com/zan8in?tab=followers |
美丽人生,享受生活!- life is fantastic. enjoy life. |
None |
None |
19 |
0 |
117 |
0 |
0 |
Go |
0 |
0 |
| yuriisanin |
CVE-2022-45025:在 Markdown Preview Enhanced(VSCode、Atom)中通过 PDF 导入进行命令注入 |
https://github.com/yuriisanin/CVE-2022-45025 |
https://github.com/yuriisanin?tab=followers |
Security Engineer |
Kyiv, Ukraine |
Octal Security |
7 |
0 |
59 |
0 |
0 |
Python |
0 |
0 |
| yogeshojha |
rengine: 自动化信息收集的平台 |
https://github.com/yogeshojha/rengine |
https://github.com/yogeshojha?tab=followers |
Research Engineer @ TRG building solutions for Crime and Terror Builds and maintains reNgine |
None |
TRG Research and Development |
47 |
0 |
309 |
0 |
0 |
Python,JavaScript,PHP |
0 |
0 |
| yidao620c |
Python Cookbook 第三版 中文版 |
https://github.com/yidao620c/python3-cookbook |
https://github.com/yidao620c?tab=followers |
keep running |
Xian China |
Huawei Technologies Co., Ltd. |
12 |
0 |
69 |
0 |
0 |
Python,Java,Jupyter,CSS |
0 |
0 |
| xiecat |
Goblin - 一款适用于红蓝对抗中的仿真钓鱼系统 |
https://github.com/xiecat/goblin |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Go,Dockerfile |
0 |
0 |
| xiaoy-sec |
Pentest_Note: 渗透测试常规操作记录 |
https://github.com/xiaoy-sec/Pentest_Note |
https://github.com/xiaoy-sec?tab=followers |
|
None |
None |
1 |
0 |
31 |
0 |
0 |
|
0 |
0 |
| xiaojiaqi |
扛住100亿次红包请求的后端架构设计 |
https://github.com/xiaojiaqi/10billionhongbaos |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
None |
0 |
0 |
| xepor |
Xepor - Web Routing 框架,利用 Flask API 劫持和篡改 HTTP 请求的工具 |
https://github.com/xepor/xepor |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python |
0 |
0 |
| wuba |
Antenna: 漏洞辅助验证存在与可利用性平台 |
https://github.com/wuba/Antenna |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
TypeScript,Java,Python,JavaScript,Dart,Objective-C |
0 |
0 |
| wtdcode |
为 Unicorn 模拟器引擎提供 libfuzzer 的支持 |
https://github.com/wtdcode/fuzzercorn |
https://github.com/wtdcode?tab=followers |
ETH Zurich Student. |
Winterthur |
None |
58 |
0 |
299 |
0 |
0 |
Python,C#,C,C++,Rust |
0 |
0 |
| woodpecker-framework |
woodpecker-framwork-release: 高危漏洞精准检测与深度利用框... |
https://github.com/woodpecker-framework/woodpecker-framwork-release |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
HTML,Java |
0 |
0 |
| wkz |
kmemd - 利用 GDB 调试器查看 Linux 内核的运行时内存 |
https://github.com/wkz/kmemd |
https://github.com/wkz?tab=followers |
|
Sweden |
None |
37 |
0 |
54 |
0 |
0 |
C,Shell |
0 |
0 |
| winsiderss |
System Informer - 一款开源的 Windows 资源监控和软件调试工具 |
https://github.com/winsiderss/systeminformer |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C |
0 |
0 |
| wh1t3p1g |
TABBY:一款针对Java语言的静态代码分析工具 |
https://github.com/wh1t3p1g/tabby |
https://github.com/wh1t3p1g?tab=followers |
Study On Web Security && Code review (semi-auto and manual) |
None |
Never Stop Exploiting |
29 |
0 |
1500 |
0 |
0 |
PHP,Java |
0 |
0 |
| wavestone-cdt |
EDR 检测机制以及用 EDRSandblast 工具逃逸 EDR 的检测 |
https://github.com/wavestone-cdt/EDRSandblast/tree/DefCon30Release |
https://github.com/wavestone-cdt?tab=followers |
Projects from the auditors and consultants from Wavestones Cybersecurity & Digital Trust practice |
None |
Wavestone |
14 |
0 |
0 |
0 |
0 |
Python,C |
0 |
0 |
| viaMover |
Sherlock对Mover的合约审计报告,包含一个高危和一个中危漏洞。 |
https://github.com/viaMover/contract-audit-reports/blob/main/Mover_Final_Report.pdf |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
TypeScript,Python,JavaScript,Solidity,TeX,HTML |
0 |
0 |
| twosmi1e |
静态分析及代码审计自动化相关资料收集 |
https://github.com/twosmi1e/Static-Analysis-and-Automated-Code-Audit |
https://github.com/twosmi1e?tab=followers |
|
None |
None |
38 |
0 |
309 |
0 |
0 |
JavaScript,Java,HTML |
0 |
0 |
| trailofbits |
Manticore - trailofbits 开源的符号执行工具,用于分析智能合约和二进制文件 |
https://github.com/trailofbits/manticore |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,Java,Jinja,Python,C++,Go,Ruby,Rust |
0 |
0 |
| tr3ee |
Linux eBPF CVE-2022-23222 提权漏洞 Exploit |
https://github.com/tr3ee/CVE-2022-23222 |
http://tr3e.ee |
tr3eee , Member of ROIS/SCSL , Security Researcher |
None |
None |
28 |
0 |
0 |
0 |
0 |
|
0 |
0 |
| tihmstar |
iOS 15.1 kernel exploit POC for CVE-2021-30955 |
https://github.com/tihmstar/desc_race-fun_public |
https://github.com/tihmstar?tab=followers |
My PGP Key fingerprint can be found in my Twitter bio: https://twitter.com/tihmstar |
None |
None |
81 |
0 |
15 |
0 |
0 |
C,Objective-C,C++ |
0 |
0 |
| therealsaumil |
EMUX Firmware Emulation Framework |
https://github.com/therealsaumil/emux |
https://github.com/therealsaumil?tab=followers |
|
None |
None |
10 |
0 |
0 |
0 |
0 |
Python,C,JavaScript,Assembly,Arduino |
0 |
0 |
| therealdreg |
用于实现基于 Bochs 的 Linux 内核调试的工具 |
https://github.com/therealdreg/bochs_linux_kernel_debugging |
https://github.com/therealdreg?tab=followers |
Senior Malware Researcher, OS Internals, C/C++, x86 x64 ASM, reversing, forensics, hardware hacking, AVR, ARM Cortex |
Spain |
rootkit.es |
60 |
0 |
68 |
0 |
0 |
Python,C,C++ |
0 |
0 |
| theori-io |
Safari WebGL XFB UAF 漏洞(CVE-2022-26717)PoC |
https://github.com/theori-io/CVE-2022-26717-Safari-WebGL-Exploit |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,C,JavaScript,Objective-C,HTML |
0 |
0 |
| teamssix |
国内云安全资源汇总. |
https://github.com/teamssix/awesome-cloud-security |
https://github.com/teamssix?tab=followers |
Personal WeChat Public Account: TeamsSix ,, Red Team ,, WgpSec Member ,, Cloud Security |
The Peoples Republic of China |
狼组安全团队 |
50 |
0 |
307 |
0 |
0 |
TypeScript,Go,Shell,HTML,Vue |
0 |
0 |
| synacktiv |
Rooting 三星 Q60T 智能电视 |
https://github.com/synacktiv/samsung-q60t-exploit/blob/main/slides/presentation.pdf |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,Java,Python,JavaScript,Haskell,PHP,Rust |
0 |
0 |
| star-sg |
ZeroCon 会议议题 “A Journey Of Hunting macOS kernel” |
https://github.com/star-sg/Presentations/blob/main/Zer0Con%202022/A%20Journey%20Of%20Hunting%20macOS%20kernel.pptx |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,C,JavaScript,Rust |
0 |
0 |
| ssh-mitm |
用于测试 SSH 中间人劫持的工具 |
https://github.com/ssh-mitm/ssh-mitm/blob/master/README.md |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,C,HTML |
0 |
0 |
| srg-imperial |
SaBRe - Modular Selective Binary Rewriter |
https://github.com/srg-imperial/SaBRe |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,C,Shell,C++ |
0 |
0 |
| spring-projects |
Spring Core 被发现反序列化相关的 RCE 漏洞 |
https://github.com/spring-projects/spring-framework/commit/7f7fb58dd0dae86d22268a4b59ac7c72a6c22529 |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Groovy,Shell,JavaScript,Java,TypeScript |
0 |
0 |
| sourque |
基于 eBPF 技术实现的 Linux EDR |
https://github.com/sourque/louis |
https://github.com/sourque?tab=followers |
|
None |
None |
4 |
0 |
11 |
0 |
0 |
Go,Python,Shell |
0 |
0 |
| smallkirby |
借助 tty_struct 结构体的 Linux 内核漏洞的利用 |
https://github.com/smallkirby/kernelpwn/blob/master/technique/tty_struct.md |
https://github.com/smallkirby?tab=followers |
a |
Tokyo |
None |
49 |
0 |
154 |
0 |
0 |
C,Shell,Rust,Vue |
0 |
0 |
| slowmist |
区块链黑暗森林自救手册 |
https://github.com/slowmist/Blockchain-dark-forest-selfguard-handbook |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Go,HTML,Ruby |
0 |
0 |
| sleeyax |
用于 Hook Burp 的 HTTP/TLS 栈以篡改浏览器指纹的扩展 |
https://github.com/sleeyax/burp-awesome-tls |
https://github.com/sleeyax?tab=followers |
Using the right skills for the right job |
Belgium |
None |
118 |
0 |
450 |
0 |
0 |
Go,C#,TypeScript,Rust |
0 |
0 |
| skylot |
反编译工具 jadx 更新 1.3.5 版本 |
https://github.com/skylot/jadx/releases/tag/v1.3.5 |
https://github.com/skylot?tab=followers |
|
None |
None |
3 |
0 |
43 |
0 |
0 |
Java |
0 |
0 |
| shuai06 |
Zyxel 防火墙远程命令注入漏洞(CVE-2022-30525)批量检测脚本. |
https://github.com/shuai06/CVE-2022-30525 |
https://github.com/shuai06?tab=followers |
侠之大者,为国为民。 |
None |
None |
26 |
0 |
956 |
0 |
0 |
Python |
0 |
0 |
| shmilylty |
netspy-快速探测内网可达网段工具 |
https://github.com/shmilylty/netspy |
https://github.com/shmilylty?tab=followers |
Developer, pentester and bug hunter. |
localhost |
None |
84 |
0 |
2500 |
0 |
0 |
Python,Go,Vue |
0 |
0 |
| seemoo-lab |
提取并修改 AirTag 的固件,定制自己的 AirTag |
https://github.com/seemoo-lab/airtag/blob/main/woot22-paper.pdf |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,Jupyter,Python,Kotlin,JavaScript,Lua,HTML,Swift |
0 |
0 |
| seclab-ucr |
Paper Progressive Scrutiny: Incremental Detection of UBI bugs in the Linux Kernel,利用符号执行技术,在 Linux 代码仓库中扫描增量代码检测变量未初始化漏洞 |
https://github.com/seclab-ucr/IncreLux |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,Python,JavaScript,C++,HTML,Go |
0 |
0 |
| satan1a |
TheRoadOfSO: 学习安全运营的记录 |
https://github.com/satan1a/TheRoadOfSO/ |
https://github.com/satan1a?tab=followers |
Hello from the end of the world :-) |
None |
None |
157 |
0 |
977 |
0 |
0 |
Python,HTML |
0 |
0 |
| sarsko |
CreuSAT - Rust 写的 SAT solver |
https://github.com/sarsko/CreuSAT |
https://github.com/sarsko |
@sarsko |
Oslo |
None |
10 |
0 |
19 |
0 |
0 |
C,JavaScript,Rust |
0 |
0 |
| sairson |
Yasso: 强大的内网渗透辅助工具集 |
https://github.com/sairson/Yasso |
https://github.com/sairson?tab=followers |
#PenTest , #RedTeam , #Student |
None |
None |
243 |
0 |
276 |
0 |
0 |
Vue,Java,Python,JavaScript,C++,C#,Smarty,Go,PowerShell,CSS |
0 |
0 |
| safe6Sec |
哥斯拉&冰蝎源码分析 |
https://github.com/safe6Sec/ShellManageTool |
https://github.com/safe6Sec?tab=followers |
script kiddie |
kunming,China |
threatbook |
112 |
0 |
1200 |
0 |
0 |
Go,Java,CodeQL |
0 |
0 |
| saeidshirazi |
智能合约安全相关的资料整理 |
https://github.com/saeidshirazi/Awesome-Smart-Contract-Security |
https://github.com/saeidshirazi?tab=followers |
Cyber Security Researcher |
canada |
None |
37 |
0 |
17 |
0 |
0 |
Python,Jupyter,CSS |
0 |
0 |
| saaramar |
刚刚举办的 Bluehat 会议关于 Intel MTE 的议题《Security Analysis of MTE Through Examples》 |
https://github.com/saaramar/security_analysis_mte/blob/main/Security%20Analysis%20of%20MTE%20Through%20Examples.pdf |
https://github.com/pastenctf |
Reversing, exploits, Windows internals, virtualization, mitigations. @pastenctf team member. |
None |
None |
15 |
0 |
37 |
0 |
0 |
Python,C,C++ |
0 |
0 |
| rust-fuzz |
honggfuzz-rs - 利用 Honggfuzz Fuzz Rust 代码 |
https://github.com/rust-fuzz/honggfuzz-rs |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
HTML,Shell,C++,Rust |
0 |
0 |
| rosehgal |
Linux 二进制开发学习资料. |
https://github.com/rosehgal/BinExp |
https://github.com/rosehgal?tab=followers |
Working !! |
India |
Gojek |
55 |
0 |
163 |
0 |
0 |
Python,Dockerfile,C,Shell,Java |
0 |
0 |
| rootsecdev |
Azure 云环境安全测试相关的资料 |
https://github.com/rootsecdev/Azure-Red-Team |
https://github.com/rootsecdev?tab=followers |
|
None |
None |
40 |
0 |
2 |
0 |
0 |
PowerShell |
0 |
0 |
| root-tanishq |
一个专门fuzz User-Agent , X-Forwarded-For, Referer的 SQLI Fuzzer |
https://github.com/root-tanishq/userefuzz |
https://github.com/root-tanishq?tab=followers |
kuns Notebook OSCP , eWPTXv2 |
None |
None |
16 |
0 |
25 |
0 |
0 |
Python,Shell |
0 |
0 |
| romainthomas |
一个逆向工程研讨会的ppt,讲到了很多x86下逆向的技巧 |
https://github.com/romainthomas/reverse-engineering-workshop |
https://github.com/lief-project |
Security Engineer working on mobile, obfuscation and file formats. Author & maintainer of @lief-project / @open-obfuscator |
None |
@lief-project @open-obfuscator |
49 |
0 |
331 |
0 |
0 |
Java,C++ |
0 |
0 |
| revng |
revng - 将 ELF 二进制文件翻译成 LLVM IR 的工具 |
https://github.com/revng/revng |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,TypeScript,CMake,Python,C++,Shell |
0 |
0 |
| retrage |
Ghidra analyzer for UEFI firmware |
https://github.com/retrage/efiSeek/tree/efi-xplorer |
https://github.com/retrage?tab=followers |
UEFI firmware enthusiast |
Tokyo, Japan |
None |
40 |
0 |
2 |
0 |
0 |
Java,C,HTML,Dockerfile |
0 |
0 |
| reecdeep |
HiveV5勒索软件文件解密Poc和算法分析 |
https://github.com/reecdeep/HiveV5_file_decryptor |
https://github.com/reecdeep?tab=followers |
Malware analyst, reverse engineer |
Stack |
None |
2 |
0 |
0 |
0 |
0 |
C++ |
0 |
0 |
| redcanaryco |
渗透测试中的 Account 修改方法(Windows/域账户/AWS/Auzre) |
https://github.com/redcanaryco/atomic-red-team/blob/master/atomics/T1098/T1098.md |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,TypeScript,Jupyter,Python,JavaScript,Ruby,PowerShell,Rust |
0 |
0 |
| quarkslab |
When eBPF meets TLS,来自 CanSecWest 会议 |
https://github.com/quarkslab/conf-presentations/blob/master/CanSecWest-2022/When%20eBPF%20meets%20TLS.pdf |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,TypeScript,Python,JavaScript,C++,Shell,Go |
0 |
0 |
| punk-security |
dnsReaper - 基于多个不同的云 DNS 服务收集子域名信息 |
https://github.com/punk-security/dnsReaper |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,C#,HTML,JavaScript |
0 |
0 |
| ptresearch |
Positive Research 团队开源了他们为开源 IDS/IPS 引擎 Suricata 写的大量漏洞检测规则 |
https://github.com/ptresearch/AttackDetection |
https://github.com/ptresearch?tab=followers |
|
None |
Positive Research Team |
13 |
0 |
1 |
0 |
0 |
Python |
0 |
0 |
| prowler-cloud |
Prowler: AWS security best practices 基线检查 |
https://github.com/prowler-cloud/prowler |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Shell,HCL |
0 |
0 |
| projectdiscovery |
Nuclei - 基于YAML语法模板的定制化快速漏洞扫描器 |
https://github.com/projectdiscovery/nuclei |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Go,Python,JavaScript,Java,PHP |
0 |
0 |
| praetorian-inc |
一款扫描文本数据中的敏感信息的工具,可用于扫描开源项目寻找是否包含secret key在内的敏感信息泄露 |
https://github.com/praetorian-inc/noseyparker |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
None |
0 |
0 |
| potmdehex |
有研究员公开了一个利用 CVE-2021-30937 漏洞实现 iOS 15.0 - 15.1.1 内核读写的 Exploit |
https://github.com/potmdehex/multicast_bytecopy |
https://github.com/potmdehex?tab=followers |
Reverse Engineer |
None |
None |
11 |
0 |
8 |
0 |
0 |
C,Ruby |
0 |
0 |
| plummm |
SyzScope - 自动化评估 Bug 安全影响的工具(Paper) |
https://github.com/plummm/SyzScope |
https://github.com/plummm?tab=followers |
37 |
California |
University of California, Riverside |
33 |
0 |
115 |
0 |
0 |
C#,Python,C,HTML |
0 |
0 |
| pinauten |
Fugu15 - 研究员 Linus Henze 放出了他的 iOS 15.4.1 越狱工具 |
https://github.com/pinauten/Fugu15 |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,Swift |
0 |
0 |
| pedrib |
Cisco RV340 SSL VPN Unauth root RCE 漏洞分析 |
https://github.com/pedrib/PoC/blob/master/advisories/Pwn2Own/Austin_2021/flashback_connects/flashback_connects.md |
https://github.com/pedrib?tab=followers |
1337 |
London, United Kingdom |
Agile Information Security |
14 |
0 |
93 |
0 |
0 |
Java,HTML,Ruby,CSS,C++ |
0 |
0 |
| pascal-lab |
Tai-e:Java静态分析框架 |
https://github.com/pascal-lab/Tai-e |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Shell,Java |
0 |
0 |
| parsdefense |
高通骁龙平台 CVE-2021-1965 WiFi Zero Click RCE Trigger PoC |
https://github.com/parsdefense/CVE-2021-1965 |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C |
0 |
0 |
| p0larisdev |
iOS 9.x 越狱工具 p0laris 开源 |
https://github.com/p0larisdev/app |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C |
0 |
0 |
| p0dalirius |
常见 CMS/LMS Web 框架的 RCE 技术整理 |
https://github.com/p0dalirius/Awesome-RCE-techniques |
https://github.com/p0dalirius?tab=followers |
Security Researcher 🕵️♂️ , Speaker 📣 |
[object Object] |
Podalirius |
65 |
0 |
7 |
0 |
0 |
Python,PHP,Dockerfile |
0 |
0 |
| osandov |
drgn - 支持通过 Python 实现脚本化扩展的调试器 |
https://github.com/osandov/drgn |
https://github.com/osandov?tab=followers |
|
Seattle, WA |
@facebook |
50 |
0 |
15 |
0 |
0 |
Python,C,Shell,C++,Vim |
0 |
0 |
| optiv |
Freeze - 利用进程挂起、直接 Syscall 调用等方法实现 Shellcode 隐蔽执行,逃逸 EDR 检测 |
https://github.com/optiv/Freeze |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Go,Python,Kotlin |
0 |
0 |
| omair2084 |
Windows NFS CVE-2022-26937 PoC |
https://github.com/omair2084/CVE-2022-26937 |
https://github.com/omair2084?tab=followers |
|
None |
None |
13 |
0 |
0 |
0 |
0 |
Python,Shell |
0 |
0 |
| olafhartong |
Windows Defender for Endpoint 版本的数据采集范围、防护机制研究 |
https://github.com/olafhartong/Presentations/blob/master/Lifting-the-veil-a-look-at-MDE-under-the-hood.pdf |
https://github.com/olafhartong?tab=followers |
|
The Netherlands |
@FalconForceTeam |
56 |
0 |
69 |
0 |
0 |
Batchfile,PowerShell |
0 |
0 |
| occia |
自动生成 Fuzz Driver,Fuzz macOS 闭源 SDK |
https://github.com/occia/apicraft |
https://github.com/occia?tab=followers |
poor in every aspect but desire : ( |
The Earth |
Nanyang Technological University |
18 |
0 |
242 |
0 |
0 |
Go,Dockerfile,C++,Objective-C++ |
0 |
0 |
| nonamecoder |
有研究员发现本田思域汽车无钥匙系统存在漏洞,攻击者发射 RF 信号控制车门和启动发动机 |
https://github.com/nonamecoder/CVE-2022-27254 |
https://github.com/nonamecoder?tab=followers |
|
None |
None |
4 |
0 |
4 |
0 |
0 |
Python |
0 |
0 |
| neargle |
从零开始的 Kubernetes 攻防 |
https://github.com/neargle/my-re0-k8s-security |
https://github.com/Tencent |
💭 高级安全从业焦虑研究员 @Tencent . Security of CloudNative、Kubernetes And Container... ACGer~ |
Xiamen(Amoy) |
Tencent |
64 |
0 |
1200 |
0 |
0 |
Go,Python,Shell,TypeScript |
0 |
0 |
| nccgroup |
Ghostrings is a collection of Ghidra scripts for recoverin... |
https://github.com/nccgroup/ghostrings |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,Shell,Java,Python,JavaScript,C#,Elixir |
0 |
0 |
| n0n5m1l3 |
RF Hacking with a Flipper Zero |
https://github.com/n0n5m1l3/Presentations |
https://github.com/n0n5m1l3?tab=followers |
|
None |
None |
44 |
0 |
160 |
0 |
0 |
Python,C#,C,C++ |
0 |
0 |
| mzlogin |
Awesome ADB(Android Debug Bridge) |
https://github.com/mzlogin/awesome-adb |
https://github.com/mzlogin?tab=followers |
微信公众号:闷骚的程序员 |
Wuhan, China |
None |
68 |
0 |
861 |
0 |
0 |
CoffeeScript,HTML,Java,Vim |
0 |
0 |
| mttaggart |
OffensiveNotion: Notion as a platform for offensive operat... |
https://github.com/mttaggart/OffensiveNotion |
https://github.com/mttaggart?tab=followers |
|
None |
None |
47 |
0 |
365 |
0 |
0 |
Vue,JavaScript,Rust |
0 |
0 |
| modzero |
趋势科技 Deep Security Agent Linux 版本 root 提权漏洞 PoC |
https://github.com/modzero/MZ-21-02-Trendmicro |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Shell,Java,Python,JavaScript,C++,Perl,C# |
0 |
0 |
| modernizing |
代码分析与自动化重构 |
https://github.com/modernizing/modernization |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Go,Kotlin,TypeScript,Rust,C# |
0 |
0 |
| midisec |
BypassAnti-Virus: 免杀技术学习资料. |
https://github.com/midisec/BypassAnti-Virus |
https://github.com/midisec?tab=followers |
love life,love Internet |
China |
None |
11 |
0 |
14 |
0 |
0 |
Python,Go,C,C++,CSS |
0 |
0 |
| microsoft |
Playwright - 微软开源的控制浏览器实现自动化的框架 |
https://github.com/microsoft/playwright |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
TypeScript,Jupyter,C#,JavaScript,C++,Python,Q#,F# |
0 |
0 |
| mich01 |
短消息服务 SMS 安全加密的分析 |
https://github.com/mich01/SpiderSMS/blob/master/BSidesNairobi%202022%20-Michael%20Kangethe.pdf |
https://github.com/mich01?tab=followers |
|
Kenya |
None |
11 |
0 |
1 |
0 |
0 |
Java |
0 |
0 |
| memN0ps |
面向 Red Team 的 Rust 版 Windows 内核驱动 |
https://github.com/memN0ps/eagle-rs/ |
https://github.com/memN0ps?tab=followers |
Pentester / Red Teamer interested in Rust, Windows Internals, and Reverse Engineering. |
New Zealand |
None |
5 |
0 |
77 |
0 |
0 |
Rust |
0 |
0 |
| mdecrevoisier |
将 Windows EventID 映射到 MITRE [email protected] 攻击矩阵的工具 |
https://github.com/mdecrevoisier/EVTX-to-MITRE-Attack |
https://github.com/mdecrevoisier?tab=followers |
IT Security Analyst / SOC |
None |
None |
7 |
0 |
1 |
0 |
0 |
Roff,PowerShell |
0 |
0 |
| mborgerson |
Decompilation as a Service,多款反编译器处理同一个文件,方便对比结果 |
https://github.com/mborgerson/mdec |
https://github.com/mborgerson?tab=followers |
|
None |
None |
97 |
0 |
779 |
0 |
0 |
Python,C,Shell,Objective-C,C++ |
0 |
0 |
| mattifestation |
AntimalwareBlight - 滥用 Windows Early Launch Antimalware (ELAM) 的防护功能 |
https://github.com/mattifestation/AntimalwareBlight |
https://github.com/mattifestation?tab=followers |
|
None |
None |
29 |
0 |
10 |
0 |
0 |
PowerShell |
0 |
0 |
| matanolabs |
Matano - 基于 Apache Iceberg 等项目搭建的 PB 级 Security Lake 数据平台 |
https://github.com/matanolabs/matano |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Rust |
0 |
0 |
| markakd |
DirtyCred - 利用 Kernel Credentials Swap 实现提权的利用方法 |
https://github.com/markakd/dirtycred |
https://github.com/Markakd?tab=followers |
PhD at Northwestern University |
None |
None |
12 |
0 |
350 |
0 |
0 |
Python,C,LLVM |
0 |
0 |
| mandiant |
floss - mandiant 开源的用于从恶意软件中提取反混淆字符串的工具 |
https://github.com/mandiant/flare-floss |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,Vue,Python,C++,C#,PowerShell |
0 |
0 |
| malware-unicorn |
Rust 语言编写的将内存中的 DLL 注入远程进程的工具 |
https://github.com/malware-unicorn/rusty-memory-loadlibrary |
https://github.com/malwareunicorn |
MALWARE + FASHION = UNICORN Reverse Engineering Malware twitter: @malwareunicorn |
San Francisco |
None |
25 |
0 |
3 |
0 |
0 |
Go,HTML,C++,Rust |
0 |
0 |
| m417z |
winapiexec - 命令行方式直接调用 win32 API 的工具 |
https://github.com/m417z/winapiexec |
https://github.com/m417z?tab=followers |
|
None |
None |
53 |
0 |
68 |
0 |
0 |
C,HTML,C++ |
0 |
0 |
| ly4k |
Certipy - Python implementation for Active Directory certificate abuse |
https://github.com/ly4k/Certipy |
https://github.com/ly4k?tab=followers |
Security Researcher |
Copenhagen, Denmark |
IFCR |
9 |
0 |
8 |
0 |
0 |
Python,Ruby,C++ |
0 |
0 |
| lxflxfcl |
漏洞监控平台——Monitor |
https://github.com/lxflxfcl/monitor |
https://github.com/lxflxfcl?tab=followers |
|
None |
None |
17 |
0 |
10 |
0 |
0 |
Java,XSLT,Python,C#,Go,PowerShell |
0 |
0 |
| loov |
Go 语言汇编和源码查看工具 |
https://github.com/loov/lensm |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Go,HTML |
0 |
0 |
| loiclec |
Fuzzcheck is a modular, structure-aware, and feedback-driven fuzzing engine for Rust functions. |
https://github.com/loiclec/fuzzcheck-rs |
https://github.com/loiclec?tab=followers |
|
Utrecht, Netherlands |
None |
14 |
0 |
20 |
0 |
0 |
Rust |
0 |
0 |
| lkarlslund |
滥用 LDAP Ping requests 实现匿名爆破 Active Directory 用户名 |
https://github.com/lkarlslund/ldapnomnom |
https://github.com/lkarlslund?tab=followers |
Curious Security Minded Octopus. Works as a freelance security consultant in Danmark. Loves Active Directory, finding the holes in the cheese and coding Golang. |
Denmark |
NetSection Security |
27 |
0 |
134 |
0 |
0 |
Go,Shell |
0 |
0 |
| lindsey98 |
Phishpedia - 利用深度学习的方案识别钓鱼 Web 页面 |
https://github.com/lindsey98/Phishpedia |
https://github.com/lindsey98?tab=followers |
|
None |
National University of Singapore |
98 |
0 |
181 |
0 |
0 |
Python,Java,Jupyter |
0 |
0 |
| lijiejie |
EasyPen: 图形化安全巡检与应急工具 |
https://github.com/lijiejie/EasyPen |
https://github.com/lijiejie?tab=followers |
Just For Fun |
None |
None |
19 |
0 |
5 |
0 |
0 |
Python,JavaScript |
0 |
0 |
| liamg |
Linux 自动化提权工具 |
https://github.com/liamg/traitor |
https://github.com/aquasecurity |
Open Source at @aquasecurity |
New Forest, UK |
@aquasecurity |
114 |
0 |
246 |
0 |
0 |
Go |
0 |
0 |
| lcvvvv |
Kscan: 一款纯go开发的全方位扫描器 |
https://github.com/lcvvvv/kscan/ |
https://github.com/lcvvvv?tab=followers |
Talk is cheap. Show me the code |
Changsha |
None |
7 |
1 |
91 |
0 |
0 |
Go |
0 |
0 |
| kubesphere |
KubeEye - 为 Kubernetes 设计的巡检工具,用于发现 Kubernetes 资源(使用 OPA )、集群组件、集群节点(使用Node-Problem-Detector)等配置是否符合最佳实践 |
https://github.com/kubesphere/kubeeye |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
SCSS,Shell,Java,Jinja,JavaScript,HTML,Go,Dockerfile,Mustache |
0 |
0 |
| krol3 |
Container Security Checklist: From the image to the workload |
https://github.com/krol3/container-security-checklist |
https://github.com/aquasecurity |
Software Developer @aquasecurity / CKA / CKAD |
Brazil |
@aquasecurity |
100 |
0 |
71 |
0 |
0 |
HTML,Dockerfile |
0 |
0 |
| knownsec |
KCon 2022 Slide |
https://github.com/knownsec/KCon/tree/master/2022 |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,Go,JavaScript,Rust,C++ |
0 |
0 |
| khalednassar |
前两天推送的 “Psychic Signatures” TLS 漏洞的 PoC |
https://github.com/khalednassar/CVE-2022-21449-TLS-PoC |
https://github.com/khalednassar?tab=followers |
|
Netherlands |
None |
30 |
0 |
16 |
0 |
0 |
Python,Go,C |
0 |
0 |
| kasif-dekel |
有研究员向 OSR DeviceTree 提交了一个本地提权漏洞,OSR 直接从网站上移除了该工具 |
https://github.com/kasif-dekel/OSR_DeviceTree_Vuln/blob/main/README.md |
https://github.com/kasif-dekel?tab=followers |
|
None |
None |
23 |
0 |
8 |
0 |
0 |
C |
0 |
0 |
| josevcm |
基于 SDR 分析 NFC 协议的工具 |
https://github.com/josevcm/nfc-laboratory |
https://github.com/josevcm?tab=followers |
|
Madrid, Spain |
None |
1 |
0 |
7 |
0 |
0 |
C++ |
0 |
0 |
| jkctech |
滥用 Telegram 的 People Near Me 特性实现位置跟踪 |
https://github.com/jkctech/Telegram-Trilateration |
https://github.com/jkctech?tab=followers |
Student at Codam - 42 Network. Electrical Engineer |
Netherlands |
None |
15 |
0 |
76 |
0 |
0 |
Python,C#,CSS |
0 |
0 |
| jiangsir404 |
用于红蓝对抗中快速验证 Web 应用漏洞的工具 |
https://github.com/jiangsir404/POC-S |
https://github.com/jiangsir404?tab=followers |
Talk is cheap, show me the code. |
shenzhen |
None |
22 |
0 |
302 |
0 |
0 |
Python |
0 |
0 |
| janestreet |
magic-trace - 基于 Intel PT 的进程 Trace 工具 |
https://github.com/janestreet/magic-trace |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,Shell,Makefile,OCaml,C++ |
0 |
0 |
| jaiswalakshansh |
Meta(Facebook) BugBounty-Writeups |
https://github.com/jaiswalakshansh/Facebook-BugBounty-Writeups |
https://github.com/jaiswalakshansh?tab=followers |
Break the Code :) |
Pune, Maharashta |
None |
28 |
0 |
95 |
0 |
0 |
Python,Java,CodeQL |
0 |
0 |
| infobyte |
利用 Realtek eCOS SDK 的漏洞攻破多款路由器 |
https://github.com/infobyte/cve-2022-27255/blob/main/DEFCON/slides.pdf |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,C,HTML,Java,Perl |
0 |
0 |
| ihebski |
渗透测试实战笔记 |
https://github.com/ihebski/A-Red-Teamer-diaries |
https://github.com/ihebski?tab=followers |
Security Operations Engineer (⌐■_■) , Pentester , Bughunter |
Error: Unable to resolve |
None |
62 |
0 |
644 |
0 |
0 |
Python,HTML,Jupyter |
0 |
0 |
| idaholab |
Malcolm - 网络流量分析工具 |
https://github.com/idaholab/Malcolm |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,TypeScript,Assembly,Python,SWIG,JavaScript,C++,HTML |
0 |
0 |
| iSafeBlue |
BCS 2022 会议探索JNDI攻击议题 PPT |
https://github.com/iSafeBlue/presentation-slides/blob/main/BCS2022-%E6%8E%A2%E7%B4%A2JNDI%E6%94%BB%E5%87%BB.pdf |
https://github.com/iSafeBlue?tab=followers |
浅蓝 b1u3r , Security Researcher , Java Development Engineer |
None |
None |
16 |
0 |
605 |
0 |
0 |
Python,JavaScript,Java |
0 |
0 |
| httpvoid |
在 Rails 找 Gadget 实现 Ruby Deserialization 漏洞的利用 |
https://github.com/httpvoid/writeups/blob/main/Ruby-deserialization-gadget-on-rails.md |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python |
0 |
0 |
| hgarrereyn |
GraphFuzz: Library API Fuzzing with Lifetime-aware Dataflow Graphs |
https://github.com/hgarrereyn/GraphFuzz |
https://github.com/dicegang |
Incoming PhD student at CMU / CTF player @dicegang / Fuzzing @ForAllSecure / VR at Margin Research |
Chicago |
None |
51 |
0 |
50 |
0 |
0 |
Python,C,JavaScript,Verilog |
0 |
0 |
| hfiref0x |
KDU - 利用从正常合法软件中提取的有漏洞的驱动实现内核级别的内存任意读写,继而实现禁用内核保护、进程劫持等目标 |
https://github.com/hfiref0x/KDU |
https://github.com/hfiref0x?tab=followers |
|
None |
None |
29 |
0 |
30 |
0 |
0 |
C |
0 |
0 |
| hashishrajan |
公有云漏洞相关的资料整理 |
https://github.com/hashishrajan/cloud-security-vulnerabilities |
https://github.com/hashishrajan |
follow me @hashishrajan |
Australia |
@CloudSecurityPodcast @PageUpPeopleOrg |
41 |
0 |
126 |
0 |
0 |
|
0 |
0 |
| hasherezade |
Process Overwriting - 在进程中注入 PE 文件 |
https://github.com/hasherezade/process_overwriting |
https://github.com/hasherezade?tab=followers |
|
Poland |
None |
80 |
0 |
64 |
0 |
0 |
C,Assembly,C++ |
0 |
0 |
| hardenedvault |
VED - Linux 内核威胁检测和防御系统 |
https://github.com/hardenedvault/ved |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,C,Shell |
0 |
0 |
| hakivvi |
WSO2 RCE (CVE-2022-29464) exploit and writeup. |
https://github.com/hakivvi/CVE-2022-29464 |
https://github.com/hakivvi?tab=followers |
web pentesting and low level stuff. |
Morocco |
None |
7 |
0 |
236 |
0 |
0 |
Python,C,C++ |
0 |
0 |
| gusmanb |
一款开源的 24 通道软硬件逻辑分析仪 |
https://github.com/gusmanb/logicanalyzer |
https://github.com/gusmanb?tab=followers |
|
Spain |
None |
54 |
0 |
26 |
0 |
0 |
C#,Makefile |
0 |
0 |
| guidovranken |
Cryptofuzz - 用于 Fuzz 加密库的工具 |
https://github.com/guidovranken/cryptofuzz |
https://github.com/guidovranken?tab=followers |
|
Netherlands |
None |
82 |
0 |
8 |
0 |
0 |
C++ |
0 |
0 |
| google-research |
Google 发起从训练模型中逆向还原出训练数据集的安全挑战 |
https://github.com/google-research/lm-extraction-benchmark |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,Haskell,Jupyter,C++ |
0 |
0 |
| google |
替换 go 的 text/template 文本模板,防护注入漏洞 |
https://github.com/google/safetext |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
TypeScript,Java,Python,Kotlin,JavaScript,C++,HTML,Go |
0 |
0 |
| gmh5225 |
LLVM 安全相关的资料收集 |
https://github.com/gmh5225/awesome-llvm-security |
https://github.com/gmh5225?tab=followers |
windows/llvm/game security/blockchain |
El Salvador |
None |
83 |
0 |
715 |
0 |
0 |
C,Java,C#,C++,Batchfile,Rust,Inno,CMake,CSS |
0 |
0 |
| git |
Git 修复了一个本地仓库 clone 过程中的符号链接 Following 问题,可以泄露用户敏感信息 |
https://github.com/git/git/security/advisories/GHSA-3wp6-j8xr-qw85 |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,HTML,Ruby,CSS |
0 |
0 |
| getActivity |
中国 Android 个人技术开源排行榜. |
https://github.com/getActivity/AndroidGithubBoss |
https://github.com/getActivity?tab=followers |
专业造轮子 |
Guangzhou,China |
None |
25 |
0 |
0 |
0 |
0 |
Kotlin,Java |
0 |
0 |
| gamozolabs |
一款从 /proc/mem 提取进程内存快照导入 IDA 分析的插件 |
https://github.com/gamozolabs/proc_mem_ida_loader |
https://github.com/gamozolabs?tab=followers |
|
None |
None |
71 |
0 |
3 |
0 |
0 |
Python,C++,Rust |
0 |
0 |
| gaasedelen |
Lucid - An Interactive Hex-Rays Microcode Explorer |
https://github.com/gaasedelen/lucid |
https://github.com/gaasedelen?tab=followers |
turning over rocks and finding nothing is still progress. |
None |
None |
11 |
0 |
1 |
0 |
0 |
Python,C |
0 |
0 |
| fuzzware-fuzzer |
Fuzzware: Using Precise MMIO Modeling for Effective Firmware Fuzzing |
https://github.com/fuzzware-fuzzer/fuzzware |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,C,Shell |
0 |
0 |
| fullstorydev |
grpcurl - 与 gRPC 服务交互的类 curl 命令行工具 |
https://github.com/fullstorydev/grpcurl |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
TypeScript,Java,Python,JavaScript,Go,Swift |
0 |
0 |
| freingruber |
JavaScript Raider - JavaScript Fuzzing framework for v8 |
https://github.com/freingruber/JavaScript-Raider |
https://github.com/freingruber?tab=followers |
|
None |
None |
1 |
0 |
2 |
0 |
0 |
Python |
0 |
0 |
| fr0gger |
用 OpenAI 的 GPT-3 模型来提供 Windows PE 文件导入函数的细节,并解释攻击者可能如何使用该 API |
https://github.com/fr0gger/IATelligence |
https://github.com/fr0gger?tab=followers |
|
None |
@microsoft |
82 |
0 |
57 |
0 |
0 |
Python,HTML,C++ |
0 |
0 |
| fox-it |
A Python based ingestor for BloodHound |
https://github.com/fox-it/BloodHound.py |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,Java,PowerShell |
0 |
0 |
| fkie-cad |
在 Fuzz 网络应用的时候,将网络的接收和发送重定向到标准输入和输出,方便使用 AFL Fuzz 测试 |
https://github.com/fkie-cad/libdesock |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,Shell,Python,C++,TypeScript,Dockerfile,Rust |
0 |
0 |
| fingerprintjs |
不依赖 JavaScript 和 Cookie 构建用户指纹 |
https://github.com/fingerprintjs/blog-nojs-fingerprint-demo |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
TypeScript,Java,Handlebars,Kotlin,Pug,HTML,JavaScript,PHP,Swift |
0 |
0 |
| find-sec-bugs |
在 Java Web 以及 Android 项目中自动检测漏洞的插件 |
https://github.com/find-sec-bugs/find-sec-bugs |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Kotlin,HTML,Java,JavaScript |
0 |
0 |
| facebookexperimental |
Facebook 开发的一套 Rust 中间 IR 的 Interpreter |
https://github.com/facebookexperimental/MIRAI |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Java,Python,JavaScript,Makefile,C++,R,Rust |
0 |
0 |
| ex0dus-0x |
Fuzzable - 通过静态分析定位可 Fuzz 目标的工具 |
https://github.com/ex0dus-0x/fuzzable |
https://github.com/ex0dus-0x?tab=followers |
Security Engineer |
None |
None |
19 |
0 |
3200 |
0 |
0 |
Python,C,Rust |
0 |
0 |
| evilsocket |
jscythe - 滥用 node.js inspector 机制实现任意 JS 代码执行 |
https://github.com/evilsocket/jscythe |
https://github.com/evilsocket?tab=followers |
|
Italy |
None |
147 |
0 |
20 |
0 |
0 |
Go,Python,JavaScript,Rust |
0 |
0 |
| eset |
ESET 对基于多层虚拟机实现的恶意软件 Loader - Wslink 的分析 |
https://github.com/eset/wslink-vm-analyzer/blob/master/slides/WslinkVMREcon.pdf |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,YARA,C,CSS,Go |
0 |
0 |
| ergrelet |
cpplumber - 用于从可执行文件中检测泄露的源码信息的工具 |
https://github.com/ergrelet/cpplumber |
https://github.com/ergrelet?tab=followers |
Fond of reverse engineering and software development. |
Oui |
None |
10 |
0 |
31 |
0 |
0 |
Python,C++,Rust |
0 |
0 |
| epi052 |
FeroxFuzz - 基于 LibAFL 实现的 HTTP Fuzz 库 |
https://github.com/epi052/feroxfuzz |
https://github.com/epi052?tab=followers |
|
None |
None |
31 |
0 |
189 |
0 |
0 |
Python,C,Rust |
0 |
0 |
| enkomio |
一款支持在内存中执行 JS 脚本的 C2 Post-Exploitation 框架 |
https://github.com/enkomio/AlanFramework |
https://github.com/enkomio?tab=followers |
Code Monk |
Italy |
enkomio-sponsor |
21 |
0 |
45 |
0 |
0 |
C#,JavaScript,Assembly,F# |
0 |
0 |
| engn33r |
近些年蓝牙相关的安全研究资料整理 |
https://github.com/engn33r/awesome-bluetooth-security |
https://github.com/engn33r?tab=followers |
https://twitter.com/bl4ckb1rd71 |
None |
None |
20 |
0 |
142 |
0 |
0 |
Python |
0 |
0 |
| ehids |
eCapture - 基于 eBPF 技术实现 TLS 加密的明文捕获 |
https://github.com/ehids/ecapture |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Go,C |
0 |
0 |
| edwardz246003 |
COMRACE Detecting Data Race Vulnerabilities in COM Objects |
https://github.com/edwardz246003/presentations/blob/main/Usenix%20Security%202022/%E3%80%90Usenix%202022%20slides%E3%80%91COMRACE%20Detecting%20Data%20Race%20Vulnerabilities%20in%20COM%20Objects.pdf |
https://github.com/edwardz246003?tab=followers |
@edwardzpeng |
None |
None |
3 |
0 |
6 |
0 |
0 |
Python |
0 |
0 |
| edgelesssys |
Constellation - 为云环境 Kubernetes 提供机密计算能力的工具 |
https://github.com/edgelesssys/constellation |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
SCSS,Shell,Python,C++,HTML,Go |
0 |
0 |
| e-m-b-a |
EMBA - The firmware security analyzer |
https://github.com/e-m-b-a/emba |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,Shell,HTML |
0 |
0 |
| dolevf |
GraphQL Sever Fingerprinting |
https://github.com/dolevf/graphw00f |
https://github.com/dolevf?tab=followers |
Curious by Design , Security Ninja , Black Hat GraphQL Author , Security Engineer |
Canada |
Inigo Labs |
25 |
0 |
9 |
0 |
0 |
Python,JavaScript,CSS |
0 |
0 |
| deepinstinct |
通过滥用 Windows 错误报告服务以dump LSASS 的方法,来自DC30议题LSASS Shtinkering Abusing Windows Error Reporting to Dump LSASS |
https://github.com/deepinstinct/Lsass-Shtinkering |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,PowerShell,C++ |
0 |
0 |
| decoymini |
DecoyMini: 智能仿真与攻击诱捕工具 |
https://github.com/decoymini/DecoyMini |
https://github.com/decoymini?tab=followers |
|
None |
None |
2 |
0 |
10 |
0 |
0 |
C++ |
0 |
0 |
| decoder-it |
Bluehat 2022 会议的议题,滥用 RPC/DCOM 协议实现本地提权 |
https://github.com/decoder-it/bluehatil22/ |
https://github.com/decoder-it?tab=followers |
|
None |
None |
17 |
0 |
1 |
0 |
0 |
C#,C,PowerShell |
0 |
0 |
| d4rckh |
gorilla - 用于生成密码字段的工具 |
https://github.com/d4rckh/gorilla |
https://github.com/d4rckh?tab=followers |
young man from romania with security as a hobby |
Romania |
None |
87 |
0 |
342 |
0 |
0 |
Rust,Nim |
0 |
0 |
| d3ckx1 |
Fvuln: 一款自动化工具 |
https://github.com/d3ckx1/Fvuln |
https://github.com/d3ckx1?tab=followers |
a penetration test |
None |
None |
24 |
0 |
4 |
0 |
0 |
Python,HTML |
0 |
0 |
| cyware-labs |
威胁情报分析工具集的docker 镜像 |
https://github.com/cyware-labs/Threat-Response-Docker |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,YARA,Shell,Jupyter |
0 |
0 |
| cxnder |
用于 BinaryNinja 分析 Dyld Shared Cache 的插件 |
https://github.com/cxnder/bn-dyldsharedcache |
https://github.com/cxnder?tab=followers |
macOS/iOS development @ reverse engineering chick. // maintainer of the iPhone Dev Wiki (https://iphonedev.wiki) |
west lafayette |
@}-,-`- |
116 |
0 |
103 |
0 |
0 |
Python |
0 |
0 |
| cve-search |
git-vuln-finder: Finding potential software vulnerabilitie... |
https://github.com/cve-search/git-vuln-finder |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,Shell,HTML |
0 |
0 |
| ctripcorp |
flybirds: 基于自然语言的,跨端跨框架 BDD UI 自动化测试方案 |
https://github.com/ctripcorp/flybirds |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,Kotlin,C,JavaScript,Java |
0 |
0 |
| cri-o |
CRI-O 发布漏洞公告,修复近期的爆出的 root 代码执行漏洞 |
https://github.com/cri-o/cri-o/security/advisories/GHSA-6x2m-w449-qwx7 |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Go,SCSS,Python |
0 |
0 |
| connormcgarr |
Windows 虚拟化安全(VBS)研究 |
https://github.com/connormcgarr/Presentations/blob/master/McGarr_BSidesKC2022.pdf |
https://github.com/connormcgarr?tab=followers |
OSCP, OSCE , Exploit Development, Vulnerability Research, and Red Teaming. |
United States of America |
@CrowdStrike |
14 |
0 |
0 |
0 |
0 |
Python,C#,C |
0 |
0 |
| commial |
Bindings for Microsoft WinDBG TTD,支持 diff WinDBG TTD Trace 的结果 |
https://github.com/commial/ttd-bindings |
https://github.com/commial?tab=followers |
|
None |
None |
30 |
0 |
30 |
0 |
0 |
Python,PowerShell,Rust,C++ |
0 |
0 |
| coinspect |
收集了一些典型的以太坊智能合约漏洞和利用脚本 |
https://github.com/coinspect/learn-evm-attacks |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
TypeScript,Stylus,Solidity,Java,Go |
0 |
0 |
| citronneur |
pamspy - 利用 eBPF 技术 dump Linux 认证凭据 |
https://github.com/citronneur/pamspy |
https://github.com/citronneur?tab=followers |
|
Toulouse, France |
@airbus-cert |
32 |
0 |
723 |
0 |
0 |
Python,C#,C,Rust |
0 |
0 |
| cider-security-research |
Top 10 CI/CD Security Risks |
https://github.com/cider-security-research/top-10-cicd-security-risks |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
|
0 |
0 |
| chaitin |
veinmind-tools - 长亭科技开源的容器安全工具集 |
https://github.com/chaitin/veinmind-tools |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Go,Python,Vue,Java,HTML |
0 |
0 |
| center-for-threat-informed-defense |
Attack Flow - 为攻击者攻击流程进行辅助建模的工具 |
https://github.com/center-for-threat-informed-defense/attack-flow |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,TypeScript,Python,JavaScript,Vue,HTML,Ruby |
0 |
0 |
| cellebrite-labs |
ida_kcpp - 用于辅助分析 iOS kernelcache 的 IDA Pro 插件 |
https://github.com/cellebrite-labs/ida_kcpp |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,C |
0 |
0 |
| cea-sec |
usbsas - 从不受信任的 USB 存储设备读取数据的工具 |
https://github.com/cea-sec/usbsas |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,C,Rust |
0 |
0 |
| caioluders |
XSS 2 RCE on flipper_zero |
https://github.com/caioluders/pocs/blob/main/flipper_rce_xss.js |
https://github.com/caioluders?tab=followers |
|
Brazil |
None |
43 |
0 |
204 |
0 |
0 |
Python,C,HTML |
0 |
0 |
| bytedance |
GoDLP: 敏感信息保护系统 |
https://github.com/bytedance/godlp |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,TypeScript,Assembly,Python,JavaScript,Cuda,Go,Java,Ruby,Jupyter,Rust |
0 |
0 |
| bw3ll |
SHAREM - Windows Shellcode 辅助分析和构造的工具 |
https://github.com/bw3ll/sharem |
https://github.com/Bw3ll?tab=followers |
|
None |
None |
3 |
0 |
0 |
0 |
0 |
Python |
0 |
0 |
| brant-ruan |
2022云原生安全技术峰会议题Slide |
https://github.com/brant-ruan/slides-and-papers/ |
https://github.com/brant-ruan?tab=followers |
IT Security Researcher |
China |
NSFOCUS Inc. |
58 |
0 |
515 |
0 |
0 |
Python,Go,Shell |
0 |
0 |
| borzacchiello |
基于 Ghidra PCode 的符号执行引擎 |
https://github.com/borzacchiello/naaz |
https://github.com/borzacchiello?tab=followers |
PhD. Writing symbolic execution engines and program analysis related stuff |
Rome |
None |
31 |
0 |
190 |
0 |
0 |
Python,C++ |
0 |
0 |
| bluesadi |
Pluto-Obfuscator - 基于 LLVM 实现的代码混淆工具 |
https://github.com/bluesadi/Pluto-Obfuscator |
https://github.com/bluesadi?tab=followers |
Keep moving, be enthusiastic, be patient. |
Chengdu, Sichuan |
Sichuan University |
12 |
0 |
88 |
0 |
0 |
Python,LLVM,C++ |
0 |
0 |
| blasty |
blasty分享了关于其在Pwn2Own演示打印机漏洞的成功画面展示如何实现 |
https://github.com/blasty/printer-cracktro |
https://github.com/blasty?tab=followers |
|
None |
None |
19 |
0 |
5 |
0 |
0 |
Python,C,Dockerfile |
0 |
0 |
| blackorbird |
俄罗斯 Wizard Spider APT 组织分析 |
https://github.com/blackorbird/APT_REPORT/blob/master/Wizard%20Spider/WizardSpider_TLPWHITE_v.1.4.pdf |
https://github.com/blackorbird?tab=followers |
APT hunter threat analyst |
https://twitter.com/blackorbird |
https://twitter.com/blackorbird |
46 |
0 |
126 |
0 |
0 |
Python,C |
0 |
0 |
| binarly-io |
BINARLY Labs 在 OffensiveCon 2022 会议的演讲 PPT “UEFI Firmware Vulnerabilities: Past, Present and Future” |
https://github.com/binarly-io/Research_Publications/tree/main/OffensiveCon_2022 |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,Go,JavaScript,Shell,C++ |
0 |
0 |
| b0bac |
ApolloScanner: 自动化巡航扫描框架 |
https://github.com/b0bac/ApolloScanner |
https://github.com/b0bac?tab=followers |
Information Security Researcher Information Security Research Department Leader |
None |
None |
51 |
0 |
3 |
0 |
0 |
Python,JavaScript |
0 |
0 |
| aquasecurity |
Trivy - 在容器镜像、文件系统、Git Repo 中扫描漏洞的工具 |
https://github.com/aquasecurity/trivy |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Go,Python,Shell,Dockerfile,TypeScript |
0 |
0 |
| apache |
Apache Teaclave - Apache 开源的通用安全计算平台 |
https://github.com/apache/incubator-teaclave |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
TypeScript,Java,Scala,Python,JavaScript,C++,Shell,HTML |
0 |
0 |
| aolofsson |
硬件研究相关的工具整理 |
https://github.com/aolofsson/awesome-hardware-tools |
https://github.com/aolofsson?tab=followers |
Reducing the barrier to custom silicon at Zero ASIC. Formerly @ DARPA, Adapteva, Analog Devices, Texas Instruments. |
Cambridge, MA, USA |
Zero ASIC Corporation |
12 |
0 |
969 |
0 |
0 |
Shell,Verilog |
0 |
0 |
| antx-code |
Oracle Access Manager Unauthenticated Attacker Vulnerability CVE-2021-35587 |
https://github.com/antx-code/CVE-2021-35587 |
https://github.com/antx-code?tab=followers |
RCT(Reading, Coding and Trading) |
Zhengzhou, China |
None |
21 |
0 |
4800 |
0 |
0 |
Python,C,Shell,Emacs |
0 |
0 |
| alibaba |
Fastjson 1.2.80 及以下版本存在绕过默认 autoType 关闭的限制,实现远程代码执行 |
https://github.com/alibaba/fastjson/wiki/security_update_20220523 |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,TypeScript,Java,Python,JavaScript,C++,Go |
0 |
0 |
| alfarom256 |
Lenovo Diagnostics 驱动(Windows)访问控制处理不当,导致低权限进程可以实现任意物理、虚拟内存地址读写 |
https://github.com/alfarom256/CVE-2022-3699/ |
https://github.com/alfarom256?tab=followers |
|
None |
None |
56 |
0 |
69 |
0 |
0 |
Go,C,C++ |
0 |
0 |
| airbus-seclab |
AutoResolv - 用于解析导入函数详细信息的 IDA Pro 插件 |
https://github.com/airbus-seclab/AutoResolv |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,C,Ruby,OCaml,C++ |
0 |
0 |
| agrawalsmart7 |
SCodeScanner - 在源码中扫描漏洞的工具,目前支持 PHP 语言 |
https://github.com/agrawalsmart7/scodescanner |
https://github.com/agrawalsmart7?tab=followers |
|
None |
None |
25 |
0 |
57 |
0 |
0 |
Python,PHP |
0 |
0 |
| achuna33 |
MYExploit: OAExploit一款基于产品的一键扫描工具。 |
https://github.com/achuna33/MYExploit |
https://github.com/achuna33?tab=followers |
|
None |
None |
13 |
1 |
35 |
0 |
0 |
Python,Java |
0 |
0 |
| abusech |
ThreatFox:开源威胁情报共享平台 |
https://github.com/abusech/ThreatFox |
https://github.com/abusech?tab=followers |
Fighting malware and botnets |
Zurich |
abuse.ch |
4 |
0 |
0 |
0 |
0 |
Python |
0 |
0 |
| aaaddress1 |
不依赖 DLL 注入的 UAC Bypass,支持 Windows 11 |
https://github.com/aaaddress1/PR0CESS/tree/main/UACBypassJF_RpcALPC |
https://github.com/aaaddress1?tab=followers |
30cm.tw/me |
Taiwan |
TXOne Networks, inc. |
197 |
0 |
541 |
0 |
0 |
C#,C,C++ |
0 |
0 |
| ZhuriLab |
Yi: 项目监控工具 以及 Codeql 自动运行 |
https://github.com/ZhuriLab/Yi |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Go,C |
0 |
0 |
| Yavuzlar |
VulnLab: Web Application Vulnerabilities Lab |
https://github.com/Yavuzlar/VulnLab |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Go,CSS |
0 |
0 |
| Yamato-Security |
Hayabusa - 基于 Windows Event Log 的快速取证 Timeline 分析工具 |
https://github.com/Yamato-Security/hayabusa |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,Makefile,PowerShell,Rust |
0 |
0 |
| Wilfred |
Difftastic - 支持语法格式的 Diff 工具 |
https://github.com/Wilfred/difftastic |
https://github.com/Wilfred?tab=followers |
PL enthusiast, Emacs addict, and Hacklang contributor. |
Bay Area, USA |
None |
393 |
0 |
1700 |
0 |
0 |
C,JavaScript,Emacs,Rust |
0 |
0 |
| Weik1 |
Artillery: JAVA 插件化漏洞扫描器 |
https://github.com/Weik1/Artillery |
https://github.com/Weik1?tab=followers |
这个人很懒,什么都没有留下 |
None |
None |
30 |
0 |
28 |
0 |
0 |
Python,JavaScript,PHP,Java,HTML |
0 |
0 |
| Tritlo |
PropR: Property-based Program repair using GHC |
https://github.com/Tritlo/PropR |
https://github.com/Tritlo?tab=followers |
A generalist functional programmer, currently doing research as a PhD student at Chalmers University of Technology. |
Gothenburg, Sweden |
Chalmers University of Technology |
120 |
0 |
296 |
0 |
0 |
Haskell |
0 |
0 |
| Threekiii |
Awesome-Redteam: 一个红队知识仓库 |
https://github.com/Threekiii/Awesome-Redteam |
https://github.com/Threekiii?tab=followers |
|
None |
None |
9 |
0 |
3 |
0 |
0 |
Python,C,HTML |
0 |
0 |
| ThestaRY7 |
supplier: 主流供应商的一些攻击性漏洞汇总 |
https://github.com/ThestaRY7/supplier |
https://github.com/ThestaRY7?tab=followers |
|
None |
None |
29 |
0 |
130 |
0 |
0 |
Python,Vue,JavaScript |
0 |
0 |
| TheOfficialFloW |
在 Hardwear.io 安全会议上,研究员 theflow0 分享了他利用 Blu-ray 蓝光光碟攻击面攻击 PS5 的细节 |
https://github.com/TheOfficialFloW/Presentations/blob/master/2022-hardwear-io-bd-jb.pdf |
https://github.com/TheOfficialFloW?tab=followers |
Information Security Engineer |
Zurich |
None |
34 |
0 |
48 |
0 |
0 |
C |
0 |
0 |
| Tencent |
CodeAnalysis: 腾讯 Static Code Analysis |
https://github.com/Tencent/CodeAnalysis |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
None |
0 |
0 |
| Tas9er |
冰蝎Java WebShell免杀生成工具. |
https://github.com/Tas9er/ByPassBehinder4J |
https://github.com/Tas9er?tab=followers |
Code And Web Security |
None |
A.E.0.S |
27 |
0 |
6 |
0 |
0 |
|
0 |
0 |
| TROUBLE-1 |
云安全渗透测试方向的资料 |
https://github.com/TROUBLE-1/Cloud-Pentesting |
https://github.com/TROUBLE-1?tab=followers |
|
None |
None |
9 |
0 |
5 |
0 |
0 |
Python,PHP,CSS |
0 |
0 |
| SunWeb3Sec |
DeFiHackLabs: Reproduce DeFi hack incidents using Foundry |
https://github.com/SunWeb3Sec/DeFiHackLabs |
https://github.com/SunWeb3Sec?tab=followers |
Lets make Web3 more secure! |
None |
None |
6 |
0 |
5 |
0 |
0 |
Solidity |
0 |
0 |
| StarCrossPortal |
QingTing: 安全工具编排平台 |
https://github.com/StarCrossPortal/QingTing |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
PHP,Java,Rust,C++ |
0 |
0 |
| SpyGuard |
SpyGuard - 增强版的 TinyCheck,通过网络流量检测主机是否已经被攻陷 |
https://github.com/SpyGuard/SpyGuard |
https://github.com/SpyGuard?tab=followers |
|
None |
None |
1 |
0 |
0 |
0 |
0 |
Python |
0 |
0 |
| SnaffCon |
Snaffler - 渗透测试项目中帮助探测 Windows/AD 环境的工具 |
https://github.com/SnaffCon/Snaffler |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C#,Go,HTML |
0 |
0 |
| SinaKarvandi |
从头构建一个 Hypervisor |
https://github.com/SinaKarvandi/Hypervisor-From-Scratch |
https://github.com/HyperDbg |
Windows Internals Enthusiast. Interested in low-level programming. I work on @HyperDbg debugger. |
None |
None |
14 |
0 |
20 |
0 |
0 |
C#,C,JavaScript,C++ |
0 |
0 |
| SigmaHQ |
Sigma - 用于 SIEM 系统通用地描述事件日志的开放格式 |
https://github.com/SigmaHQ/sigma |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python |
0 |
0 |
| Sentinel-One |
peafl64: Windows 64位PE文件静态插桩工具 |
https://github.com/Sentinel-One/peafl64 |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,TypeScript,Java,Python,Smarty,C#,C++,Go |
0 |
0 |
| SecIdiot |
利用 NtUserHardErrorControl 实现 Windows 内核任意地址读写 |
https://github.com/SecIdiot/ANGRYORCHARD |
https://github.com/SecIdiot?tab=followers |
Programmer. Focusing primarily in C, Assembly. I am @realoriginal / Mumbai |
Florida |
None |
7 |
0 |
148 |
0 |
0 |
Python,C |
0 |
0 |
| Safe3 |
uuWAF: 免费、高性能、高扩展开源WAF |
https://github.com/Safe3/uuWAF |
https://github.com/Safe3?tab=followers |
|
None |
UUSEC Tech. |
438 |
0 |
7 |
0 |
0 |
Go,Lua,Kotlin |
0 |
0 |
| SEVulDet |
SEVulDet:基于语义增强的系统漏洞挖掘器 |
https://github.com/SEVulDet/SEVulDet |
None |
|
None |
None |
1 |
0 |
0 |
0 |
0 |
CSS |
0 |
0 |
| Ryze-T |
基于向日葵 RCE 的 LPE 漏洞 PoC |
https://github.com/Ryze-T/CNVD-2022-10270-LPE |
https://github.com/Ryze-T?tab=followers |
wx: Just_sudo_it |
None |
None |
19 |
0 |
48 |
0 |
0 |
C#,Go,C |
0 |
0 |
| RoseSecurity |
西门子 APOGEE PXC 自动化控制器认证绕过漏洞(CVE-2017-9947)扫描器 |
https://github.com/RoseSecurity/APOLOGEE |
https://github.com/RoseSecurity?tab=followers |
Hobbyist Hacker , Lifetime Learner |
None |
None |
11 |
0 |
71 |
0 |
0 |
Lua |
0 |
0 |
| Rog3rSm1th |
Frelatage - a Coverage-based Python Fuzzing Library,Fuzz Python Applications |
https://github.com/Rog3rSm1th/Frelatage |
https://github.com/Rog3rSm1th?tab=followers |
Fuzzing / OSINT / Low level stuffs |
France |
Rog3rSm1th |
11 |
0 |
109 |
0 |
0 |
Python,Shell,JavaScript,HTML |
0 |
0 |
| Rivaill |
区块链安全攻击、漏洞事件的分析和重现 |
https://github.com/Rivaill/CryptoVulhub |
https://github.com/Rivaill?tab=followers |
|
None |
None |
13 |
0 |
49 |
0 |
0 |
Python,Go,Solidity |
0 |
0 |
| RiccardoAncarani |
基于 RPC 和 DCOM 的渗透测试横向渗透 |
https://github.com/RiccardoAncarani/talks/blob/master/F-Secure/unorthodox-lateral-movement.pdf |
https://github.com/RiccardoAncarani?tab=followers |
Security Consultant @ F-Secure Corporation |
London, United Kingdom |
F-Secure Corporation |
56 |
0 |
465 |
0 |
0 |
Python,C#,C |
0 |
0 |
| RhinoSecurityLabs |
GCP IAM 提权相关的资料整理 |
https://github.com/RhinoSecurityLabs/GCP-IAM-Privilege-Escalation |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,Go |
0 |
0 |
| RedTeamOperations |
Advanced Process Injection Workshop,Windows 进程注入实验环境 |
https://github.com/RedTeamOperations/Advanced-Process-Injection-Workshop |
https://github.com/RedTeamOperations?tab=followers |
CyberWarFare Labs |
India |
CyberWarFare Labs |
30 |
0 |
5 |
0 |
0 |
C++ |
0 |
0 |
| RangerNJU |
静态程序分析入门教程 |
https://github.com/RangerNJU/Static-Program-Analysis-Book |
http://rangernju.github.io |
A CS student in NJU. |
China |
NJU |
5 |
0 |
0 |
0 |
0 |
SCSS,HTML |
117 |
11 |
| QData |
自动生成对抗性文本序列攻击 NLP 预测模型 |
https://github.com/QData/deepWordBug |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,Ruby,HTML,Jupyter |
0 |
0 |
| Ptkatz |
OrcaC2: 一款基于Websocket加密通信的多功能C&C框架 |
https://github.com/Ptkatz/OrcaC2 |
https://github.com/Ptkatz?tab=followers |
☔️ |
None |
None |
2 |
0 |
55 |
0 |
0 |
Go |
0 |
0 |
| PowerLZY |
Bold-Falcon: 开源的自动化恶意软件分析系统 |
https://github.com/PowerLZY/Bold-Falcon |
https://github.com/PowerLZY?tab=followers |
|
None |
None |
32 |
0 |
138 |
0 |
0 |
Python |
0 |
0 |
| Pear1y |
GitHub 有研究员公开了 Atlassian Bitbucket Data Center 反序列化漏洞(CVE-2022-26133) 的批量验证工具 |
https://github.com/Pear1y/CVE-2022-26133 |
https://github.com/Pear1y?tab=followers |
There is a crack in everything,thats how the light gets in. |
Bermuda |
Cyber Security |
36 |
0 |
234 |
0 |
0 |
Python,C,Java |
0 |
0 |
| P1sec |
QCSuper - 与基于高通芯片手机通信的工具,支持抓取 2G/3G/4G无线帧数据 |
https://github.com/P1sec/QCSuper |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,Java,Rust |
0 |
0 |
| Orange-Cyberdefense |
GOAD - Active Directory 渗透测试实验环境 |
https://github.com/Orange-Cyberdefense/GOAD |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,C,PHP,Ruby,PowerShell |
0 |
0 |
| NationalSecurityAgency |
NSA 发布 Ghidra 10.2 版本,Debugger、Decompiler 等组件均有更新 |
https://github.com/NationalSecurityAgency/ghidra/releases/tag/Ghidra_10.2_build |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Groovy,C,HTML,Java,JavaScript |
0 |
0 |
| Nalen98 |
Ghidra Native pcode 模拟器 |
https://github.com/Nalen98/GhidraEmu |
https://github.com/Nalen98?tab=followers |
|
None |
None |
13 |
0 |
22 |
0 |
0 |
Python,C,Java,C++ |
0 |
0 |
| NVIDIA |
NVIDIA 开源了 Linux 系统 GPU 的内核驱动 |
https://github.com/NVIDIA/open-gpu-kernel-modules |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,Jupyter,Scala,Python,Makefile,C++,Cuda,Go |
0 |
0 |
| MythicAgents |
基于 .NET 6 写的跨平台 Mythic Agent |
https://github.com/MythicAgents/Athena |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C#,Go,Python,JavaScript,Swift |
0 |
0 |
| Muirey03 |
iOS 15.6 昨天修复的 APFS CVE-2022-32832 漏洞的 PoC |
https://github.com/Muirey03/CVE-2022-32832 |
https://github.com/Muirey03?tab=followers |
|
None |
@Elementalsthegame |
56 |
0 |
16 |
0 |
0 |
Objective-C,C |
0 |
0 |
| Microsoft |
pyright - 微软开源的 Python 代码静态 type checker |
https://github.com/Microsoft/pyright |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
TypeScript,CMake,C#,JavaScript,C++,Python,Jupyter,PowerShell |
0 |
0 |
| MiSecurity |
小米发布 《消费级物联网安全基线》2.0 版本 |
https://github.com/MiSecurity/Cyber-Security-Baseline-for-Consumer-Internet-of-Things |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Go |
0 |
0 |
| ManasHarsh |
Web3 安全相关的资料收集 |
https://github.com/ManasHarsh/Awesome-Web3-security |
https://github.com/ManasHarsh?tab=followers |
Cracking the web, a bit different than others |
Bangalore |
Netskope |
16 |
0 |
10 |
0 |
0 |
Python,Shell |
0 |
0 |
| MWR-CyberSec |
PXEThief - 利用 Windows 的终端部署功能 SCCM 导出密码 |
https://github.com/MWR-CyberSec/PXEThief |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,C,PowerShell |
0 |
0 |
| MISP |
MISP - 开源威胁情报和共享平台 |
https://github.com/MISP/MISP |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,TeX,PHP,Lua |
0 |
0 |
| Lucifer1993 |
SatanSword - 红队综合渗透框架 |
https://github.com/Lucifer1993/SatanSword |
https://github.com/Lucifer1993?tab=followers |
安全圈职业炮灰 |
Chengdu,China |
= = |
44 |
1 |
818 |
0 |
0 |
Python,PowerShell |
0 |
0 |
| LubyRuffy |
cheatsheet: 信安技术羊皮卷 |
https://github.com/LubyRuffy/cheatsheet |
https://github.com/LubyRuffy?tab=followers |
Co-founder of BAIMAOHUI. |
Beijing |
baimaohui.net |
898 |
0 |
2 |
0 |
0 |
Go,JavaScript,Ruby |
0 |
0 |
| LittleBear4 |
OA-EXPTOOL: OA综合利用工具 |
https://github.com/LittleBear4/OA-EXPTOOL |
https://github.com/LittleBear4?tab=followers |
一个练习时长两年半的代码练习生,喜欢网安,代码,逆向 |
None |
None |
2 |
0 |
2 |
0 |
0 |
Python |
0 |
0 |
| Le0nsec |
SecCrawler: 每日安全日报的爬虫和推送程序 |
https://github.com/Le0nsec/SecCrawler |
https://github.com/Le0nsec?tab=followers |
Web security researcher and CTFer, member of X1cT34m & SU. |
Nanjing, China |
@X1cT34m |
51 |
0 |
332 |
0 |
0 |
Go,CSS,FreeMarker |
0 |
0 |
| LandGrey |
Spring Boot 相关漏洞学习资料,利用方法和技巧合集 |
https://github.com/LandGrey/SpringBootVulExploit |
https://github.com/LandGrey?tab=followers |
I learn cyber sec |
Shanghai |
None |
19 |
0 |
1500 |
0 |
0 |
Python,Java |
0 |
0 |
| LSPosed |
LSPosed - 基于 OG Xposed 提供 ART 的框架 |
https://github.com/LSPosed/LSPosed |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Kotlin,C,Shell,Java,C++ |
0 |
0 |
| Kudaes |
Elevator - UAC Bypass by abusing RPC and debug objects |
https://github.com/Kudaes/Elevator |
https://github.com/Kudaes?tab=followers |
nt authority\kurosh |
Madrid |
None |
9 |
0 |
276 |
0 |
0 |
C#,C++,Rust |
0 |
0 |
| KasperskyLab |
Apihashes - 卡巴斯基开源的用于识别 API 函数名已知 Hash 的插件 |
https://github.com/KasperskyLab/Apihashes |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,Shell,Python,Kotlin,JavaScript,C++,C#,Go,PHP |
0 |
0 |
| KULeuven-COSIC |
从硬件角度研究 SpaceX Starlink 终端的安全性,利用电压错误注入的技术实现任意代码执行 |
https://github.com/KULeuven-COSIC/Starlink-FI |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,Jupyter,Sage,C++,HTML,Verilog,Assembly,MATLAB |
0 |
0 |
| JonathanSalwan |
动态还原被 VMProtect 3.x 壳混淆的函数 |
https://github.com/JonathanSalwan/VMProtect-devirtualization |
https://github.com/JonathanSalwan?tab=followers |
Program analysis, reverse engineering, binary exploitation and other low level stuffz |
France - Bretagne |
None |
11 |
0 |
0 |
0 |
0 |
Python,C,LLVM,Roff,C++ |
0 |
0 |
| JDArmy |
获取域控权限的几种思路总结 |
https://github.com/JDArmy/GetDomainAdmin |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C#,Python,C,JavaScript |
0 |
0 |
| Idov31 |
FunctionStomping - 类似 Module Stomping 的 Shellcode 注入技术,用于逃逸反病毒软件的检测 |
https://github.com/Idov31/FunctionStomping |
https://github.com/Idov31?tab=followers |
Im an offensive security researcher and using this platform to share my projects and research :) |
mov eax, [ebp+location] |
None |
10 |
0 |
139 |
0 |
0 |
C++,Rust,PowerShell |
0 |
0 |
| HavocFramework |
Havoc: 可延展的后渗透远控框架 |
https://github.com/HavocFramework/Havoc |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Go,Python,C |
0 |
0 |
| HackJava |
Java 代码审计资源以及 Java 安全开发方向的资料 |
https://github.com/HackJava/HackJava |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
|
0 |
0 |
| Gui774ume |
KRIe - 基于 eBPF 实现的内核运行时保护组件 |
https://github.com/Gui774ume/krie |
https://github.com/Gui774ume?tab=followers |
Security researcher @ Datadog |
Paris |
Datadog |
18 |
0 |
0 |
0 |
0 |
Go,C |
0 |
0 |
| Group3r |
Group3r - AD 环境组策略配置探测工具 |
https://github.com/Group3r/Group3r |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C# |
0 |
0 |
| Goqi |
Banli板栗-高危资产识别和高危漏洞扫描 |
https://github.com/Goqi/Banli |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Go |
0 |
0 |
| GhostPack |
Koh - 通过 “Internal Monologue Attack” 窃取 Windows 认证凭据的工具 |
https://github.com/GhostPack/Koh |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C#,Jupyter,PowerShell |
0 |
0 |
| Ge0rg3 |
利用 AWS API Gateway 的大 IP 池构建代理解决 IP 限制的问题 |
https://github.com/Ge0rg3/requests-ip-rotator |
https://github.com/Ge0rg3?tab=followers |
|
United Kingdom |
@Accenture |
15 |
0 |
100 |
0 |
0 |
TypeScript,Python,PHP |
0 |
0 |
| G4rb3n |
Malbox: 恶意软件容器靶机 |
https://github.com/G4rb3n/Malbox |
https://github.com/G4rb3n?tab=followers |
|
None |
None |
15 |
0 |
120 |
0 |
0 |
C,Shell |
0 |
0 |
| FrenchYeti |
interruptor - 对 Frida Stalker 封装,提供更加易用的 Hook 库 |
https://github.com/FrenchYeti/interruptor |
https://github.com/FrenchYeti?tab=followers |
Software Security Researcher |
France |
None |
99 |
0 |
72 |
0 |
0 |
TypeScript,Python,JavaScript |
0 |
0 |
| FirmWire |
FirmWire - 基带固件分析平台,支持 Samsung 和 MediaTek |
https://github.com/FirmWire/FirmWire |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,C,Java |
0 |
0 |
| FelixBer |
FindFunc - 根据汇编指令、Bytes 特征在 IDA Pro 中搜索函数的插件 |
https://github.com/FelixBer/FindFunc |
https://github.com/FelixBer?tab=followers |
|
Germany |
None |
10 |
0 |
126 |
0 |
0 |
Python,C++ |
0 |
0 |
| FeeiCN |
近些年国内各个安全相关会议的 PPT 整理 |
https://github.com/FeeiCN/Security-PPT |
https://github.com/FeeiCN?tab=followers |
止介,Security Researcher |
Hangzhou, China |
Ant/MYBank |
13 |
0 |
1200 |
0 |
0 |
Python |
0 |
0 |
| FGSect |
FitM - 作为中间人,利用 snapshot-fuzzing Fuzz client 和 server 的工具 |
https://github.com/FGSect/FitM |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,Jupyter,Python,JavaScript,C++,Dockerfile,Rust |
0 |
0 |
| Esonhugh |
云安全入门材料 |
https://github.com/Esonhugh/Attack_Code |
https://github.com/Esonhugh?tab=followers |
Esonhugh is computer noob. Su-Team member/Red Team?/cloud security?/(in)dependent security researcher/pentester?/evasion lover?/focus on TTP/INTP |
in Cloud |
Eson Network |
66 |
0 |
742 |
0 |
0 |
Python,Go,Ruby |
0 |
0 |
| Dec0ne |
KrbRelayUp - 不开启 LDAP signing 的条件下实现域环境提权 |
https://github.com/Dec0ne/KrbRelayUp |
https://github.com/Dec0ne?tab=followers |
|
None |
None |
4 |
0 |
0 |
0 |
0 |
C#,Python,HTML,PowerShell |
0 |
0 |
| CoolerVoid |
CodeCat - 支持对用户输入 SINK 分析的静态代码分析工具 |
https://github.com/CoolerVoid/codecat |
https://github.com/CoolerVoid?tab=followers |
Cybersecurity professional (appsec, pentest, reverse engineering) Computer programmer, Linux/windows drivers developer. |
brazil - sao paulo |
None |
84 |
0 |
351 |
0 |
0 |
Python,C |
0 |
0 |
| CodeIntelligenceTesting |
基于 libFuzzer 实现的 JVM Fuzzer - Jazzer 一直在不断优化 |
https://github.com/CodeIntelligenceTesting/jazzer |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Shell,Java,Python,C++,TypeScript,HTML,Starlark,Go |
0 |
0 |
| Cloud-Architekt |
Overview of Microsoft Identity Security Monitoring |
https://github.com/Cloud-Architekt/AzureAD-Attack-Defense/blob/main/IdentitySecurityMonitoring.md |
https://github.com/Cloud-Architekt?tab=followers |
Cloud Security Architect, Microsoft MVP |
Koblenz |
None |
7 |
0 |
2 |
0 |
0 |
JavaScript,PowerShell |
0 |
0 |
| ChendoChap |
利用 ROP gadgets 实现 PlayStation 5 用户态的代码执行 |
https://github.com/ChendoChap/PS5-Webkit-Execution |
https://github.com/ChendoChap?tab=followers |
Sending me stuff is by no means an obligation but appreciated nonetheless. bc1qswmgpt7akstzrsudefjj88e7caxgmqfaxt59rf |
None |
None |
9 |
0 |
2 |
0 |
0 |
C#,C,JavaScript |
0 |
0 |
| Bywalks |
DarkAngel: 一款全自动白帽漏洞扫描器 |
https://github.com/Bywalks/DarkAngel |
https://github.com/Bywalks?tab=followers |
知行合一。 |
shanghai |
None |
20 |
0 |
87 |
0 |
0 |
Python,Go |
0 |
0 |
| Bypass007 |
一份开源安全项目清单,以帮助甲方安全从业人员构建企业安全能力 |
https://github.com/Bypass007/Safety-Project-Collection |
https://github.com/Bypass007?tab=followers |
专注于网络安全 |
Xiamen, China |
None |
14 |
0 |
6 |
0 |
0 |
Java |
0 |
0 |
| Bonfee |
有研究员公开了 Linux 内核 watch_queue 越界写漏洞(CVE-2022-0995)Exploit |
https://github.com/Bonfee/CVE-2022-0995 |
https://github.com/Bonfee?tab=followers |
Italian I.T. student at Ca Foscari University of Venice. |
Venice, Italy |
None |
7 |
0 |
20 |
0 |
0 |
C |
0 |
0 |
| BlackINT3 |
OpenArk - Windows 平台开源 anti-rootkit 工具 |
https://github.com/BlackINT3/OpenArk |
https://github.com/BlackINT3?tab=followers |
Focus in crafting 2022 |
None |
None |
8 |
0 |
39 |
0 |
0 |
C++ |
0 |
0 |
| BishopFox |
Sliver - 攻击行为模拟框架 |
https://github.com/BishopFox/sliver/releases/tag/v1.4.9 |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Go,Python,Shell,Java,HCL |
0 |
0 |
| Bareflank |
Bareflank Hypervisor - 一款轻量级的 Hypervisor SDK,用于快速在 64 位机器上快速构建 hypervisor |
https://github.com/Bareflank/hypervisor |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,C,C++ |
0 |
0 |
| Azure |
Stormspotter - 用图方式直观展示 Azure Active Directory 对象的工具 |
https://github.com/Azure/Stormspotter |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,TypeScript,Jupyter,C#,Python,Go,PowerShell |
0 |
0 |
| Anugrahsr |
Awesome-web3-Security: A curated list of web3Security mate... |
https://github.com/Anugrahsr/Awesome-web3-Security |
https://github.com/Anugrahsr?tab=followers |
Hey! i am Anugrah SR A Biologist moving to the field of cybersecurity. #Biology #Bioinformatics #ML #hacking #bash #python |
Kerala |
None |
64 |
0 |
105 |
0 |
0 |
|
0 |
0 |
| Adrninistrator |
Generate all call graph for Java Code |
https://github.com/Adrninistrator/java-all-call-graph |
https://github.com/Adrninistrator?tab=followers |
|
None |
None |
13 |
0 |
8 |
0 |
0 |
Shell,Java |
0 |
0 |
| Accenture |
VulFi - 一款用于辅助在 IDA Pro 中挖掘漏洞的插件 |
https://github.com/Accenture/VulFi |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,Jupyter,TypeScript,Java,Elixir |
0 |
0 |
| ASTTeam |
代码分析工具 CodeQL 相关的资料整理 |
https://github.com/ASTTeam/CodeQL |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
|
0 |
0 |
| AFLplusplus |
cargo-libafl - Fuzz Rust code with LibAFL |
https://github.com/AFLplusplus/cargo-libafl |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python,C,HTML,C++,Rust |
0 |
0 |
| 78ResearchLab |
Windows IKE RCE 漏洞的 PoC(CVE-2022-34721) |
https://github.com/78ResearchLab/PoC/tree/main/CVE-2022-34721 |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Python |
0 |
0 |
| 78778443 |
QingScan: 漏洞扫描器粘合剂 |
https://github.com/78778443/QingScan |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
None |
0 |
0 |
| 4ra1n |
Java安全研究与安全开发面试题总结 |
https://github.com/4ra1n/JavaSecInterview |
https://github.com/4ra1n?tab=followers |
Eloim Essaim |
China |
@chaitin |
12 |
0 |
2 |
0 |
0 |
Python,Go,Java |
0 |
0 |
| 404notf0und |
企业级安全智能化实践指南 |
https://github.com/404notf0und/AI-for-Security-Landing |
https://github.com/404notf0und?tab=followers |
公众号:404 Not F0und,专注于安全智能化 |
Hangzhou,China |
Ant Group |
24 |
1 |
155 |
0 |
0 |
Python,TSQL |
0 |
0 |
| 10000Tigers |
BlueHound-一款自研主机威胁狩猎工具 |
https://github.com/10000Tigers/BlueHound |
https://github.com/10000Tigers?tab=followers |
|
None |
None |
2 |
0 |
0 |
0 |
0 |
Go |
0 |
0 |
| 0xrawsec |
为 Windows 开发的开源版本 EDR |
https://github.com/0xrawsec/whids |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
Go,Python,HTML,PowerShell,Rust |
0 |
0 |
| 0xADE1A1DE |
以其他已连接 USB 设备的身份注入击键指令,来自 USENIX 会议的 Paper:The Impostor Among US(B): Off-Path Injection Attacks on USB Communications |
https://github.com/0xADE1A1DE/USB-Injection |
None |
None |
None |
None |
0 |
0 |
0 |
0 |
0 |
C,TypeScript,Assembly,VHDL,C++ |
0 |
0 |
| 0vercl0k |
Zenith - Pwn2Own TP-Link AC1750 Smart Wi-Fi Router Exploit |
https://github.com/0vercl0k/zenith |
https://github.com/0vercl0k?tab=followers |
|
US/FR |
None |
31 |
0 |
4 |
0 |
0 |
Python,C,JavaScript,C++ |
0 |
0 |
| 0ang3el |
Smuggling HTTP requests over fake WebSocket connection |
https://github.com/0ang3el/websocket-smuggle |
https://github.com/0ang3el?tab=followers |
|
None |
None |
10 |
0 |
0 |
0 |
0 |
Python,Java,Perl |
0 |
0 |