渗透测试有关的POC、EXP、脚本、提权、小工具等---About penetration-testing python-script poc getshell csrf xss cms php-getshell domainmod-xss csrf-webshell cobub-razor cve rce sql sql-poc poc-exp bypass oa-getshell cve-cm...
SpringBoot 相关漏洞学习资料,利用方法和技巧合集,黑盒安全评估 check list
#安全# Top disclosed reports from HackerOne
Vulmap 是一款 web 漏洞扫描和验证工具, 可对 webapps 进行漏洞扫描, 并且具备漏洞验证功能
Java web common vulnerabilities and security code which is base on springboot and spring security
翻译 - Java Web常见漏洞和安全代码。
利用大量高威胁poc/exp快速获取目标权限,用于渗透和红队快速打点
#Awesome# Awesome list of step by step techniques to achieve Remote Code Execution on various apps!
Check your WAF before an attacker does
CVE-2021-40444 - Fully Weaponized Microsoft Office Word RCE Exploit
翻译 - CVE-2021-40444 - 完全武器化的 Microsoft Office Word RCE 漏洞利用
CVE-2020-0796 Remote Code Execution POC
翻译 - CVE-2020-0796远程执行代码POC
Remote Command Execution as SYSTEM on Windows IoT Core (releases available for Python2.7 & Python3)
翻译 - 在Windows IoT核心版上以SYSTEM身份远程执行命令
Spring4Shell Proof Of Concept/And vulnerable application CVE-2022-22965
spring-cloud / spring-cloud-function,spring.cloud.function.routing-expression,RCE,0day,0-day,POC,EXP,CVE-2022-22963
Remote command execution vulnerability scanner for Log4j.
翻译 - Log4j 的远程命令执行漏洞扫描器。