Exploit refers to a piece of code or technique that takes advantage of a security vulnerability in a system, application, or network to cause unintended behavior. Exploits can be used by attackers to gain unauthorized access, escalate privileges, execute arbitrary code, or cause a denial of service. This topic covers the various types of exploits, such as zero-day exploits, remote code execution, and privilege escalation. It also explores the lifecycle of an exploit, from discovery and development to deployment and mitigation, and highlights the importance of vulnerability management and patching in preventing exploits.
Created by The cybersecurity community
This repository is primarily maintained by Omar Santos (@santosomar) and includes thousands of resources related to ethical hacking, bug bounties, digital forensics and incident response (DFIR), artif...
翻译 - 该存储库主要由Omar Santos维护,并包含与道德黑客/渗透测试,数字取证和事件响应(DFIR),漏洞研究,漏洞利用开发,逆向工程等相关的数千种资源。
#夺旗赛 (CTF) 和网络安全资源# CTF framework and exploit development library
翻译 - CTF框架和漏洞利用开发库
windows-kernel-exploits Windows平台提权漏洞集合
A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.
翻译 - 概念证明工具,用于生成利用不安全的Java对象反序列化的有效负载。
GEF (GDB Enhanced Features) - a modern experience for GDB with advanced debugging capabilities for exploit devs & reverse engineers on Linux
翻译 - GEF-针对漏洞利用开发者和反向者的GDB增强功能
整理并更新最新 CVE(安全漏洞) 及其 POC (漏洞证明)
linux-kernel-exploits Linux平台提权漏洞集合
#安卓# An all-in-one hacking tool to remotely exploit Android devices using ADB and Metasploit-Framework to get a Meterpreter session.
Exphub[漏洞利用脚本库] 包括Webloigc、Struts2、Tomcat、Nexus、Solr、Jboss、Drupal的漏洞利用脚本,最新添加CVE-2020-14882、CVE-2020-11444、CVE-2020-10204、CVE-2020-10199、CVE-2020-1938、CVE-2020-2551、CVE-2020-2555、CVE-2020-2883、CVE-201...
翻译 - Exphub[漏洞利用脚本库] 包括Webloigc、Struts2、Tomcat、Nexus、Solr、Jboss、Drupal的漏洞利用脚本,最新添加CVE-2020-5902、CVE-2020-11444、CVE-2020-10204、CVE-2020-10199、CVE-2020-1938、CVE-2020-2551、CVE-2020-2555、CVE-2020-2883、CVE-2019-17558、CVE-2019-6340
Kscan是一款纯go开发的全方位扫描器,具备端口扫描、协议检测、指纹识别,暴力破解等功能。支持协议1200+,协议指纹10000+,应用指纹20000+,暴力破解协议10余种。
一个攻防知识仓库 Red Teaming and Offensive Security
Vulmap 是一款 web 漏洞扫描和验证工具, 可对 webapps 进行漏洞扫描, 并且具备漏洞验证功能
#安卓# 一个简单的Android远程管理工具,客户端使用Java实现,服务端使用Python开发
#安卓# Ghost Framework is an Android post-exploitation framework that exploits the Android Debug Bridge to remotely access an Android device.
翻译 - Ghost Framework是一个Android开发后框架,可利用Android Debug Bridge远程访问Android设备。 Ghost Framework为您提供了远程Android设备管理的功能和便利。
RootMyTV is a user-friendly exploit for rooting/jailbreaking LG webOS smart TVs.
翻译 - RootMyTV 是一个用户友好的漏洞,用于生根/越狱 LG webOS 智能电视。