sechacking/NoSQLMap
Automated Mongo database exploitation tool CONTRIBUTORS-Please fork and pull to DEV not Master. Thanks!
Discovered public repositories for sechacking in the GitHub catalog.
Automated Mongo database exploitation tool CONTRIBUTORS-Please fork and pull to DEV not Master. Thanks!
Public repository.
scripts help chinese netizen, who uses vpn to combat censorship, by modifying the route table so as routing only the censored ip to the vpn
A small utility to connect a TCP socket to a Windows named pipe. It can be used, for exemple, to capture network data with tcpdump on Linux or iPhone/iPad and to see the capture in (almost) realtime in Wireshark on Windows. Released under GPLv3.
Responder is a LLMNR and NBT-NS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv2/LMv2, Extended Security NTLMSSP and Basic HTTP authentication.
A collection of all the lists, scripts and techniques I use while doing web application penetration tests.
GoLismero - The Web Knife
A set of tools made to assist in penetration testing GWT applications. Additional details about these tools can be found on my OWASP Appsec DC slides available here: http://www.owasp.org/images/7/77/Attacking_Google_Web_Toolkit.ppt
an advanced static analyzer for Python
a javascript keylogger included in a gif file
Scripted Local Linux Enumeration & Privilege Escalation Checks
XSSOR:方便XSS与CSRF的工具,http://evilcos.me/lab/xssor/
WSDL Parser extension for Burp
blog
cross-platform sqlmap GUI aimed to mobile devices
A collection of interesting new networks and tech aiming at decentralisation (in some form).
Public repository.
a gae proxy forked from gappproxy/wallproxy
Global Proxy for Android
利用Python的Socket端口转发,用于远程维护
A translation of simplified chinese for RFC 6749-The OAuth 2.0 Authorization Framework. RFC 6749 - OAuth 2.0授权框架简体中文翻译。
Crawljax: Crawling JavaScript-based Web Applications
BurpCSJ extension for Burp Pro - Crawljax Selenium JUnit integration
an extension to Burp Suite that allows for real-time target sharing
Cross-platform utility that uncovers the technologies used on websites.
Automatic SQL injection and database takeover tool
Burp Extension in Python hilighting DOM Sinks and Hosts using DOM XSS Wiki regex
Burp Suite Extensions
Develop Burp extensions in Jython
BurpSuite Pro Python Extension
Public slides and demo code of bypassing security protection in the latest Windows Internet Explorer.
Automating SQL injection using Burp Proxy Logs and SQLMap
Public repository.