Skip to content
View OFalwl's full-sized avatar

Block or report OFalwl

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

一个攻防知识库。A knowledge base for red teaming and offensive security.

Python 4,078 712 Updated Jan 5, 2026

一个漏洞 PoC 知识库。A knowledge base for vulnerability PoCs(Proof of Concept), with 1k+ vulnerabilities.

Java 4,804 1,000 Updated Feb 2, 2026

一个基于 docsify 快速部署 Awesome-POC 漏洞文档的项目。Deploying the Awesome-POC repository via docsify.

HTML 2,021 398 Updated Feb 2, 2026

ARL官方仓库备份项目:ARL(Asset Reconnaissance Lighthouse)资产侦察灯塔系统旨在快速侦察与目标关联的互联网资产,构建基础资产信息库。 协助甲方安全团队或者渗透测试人员有效侦察和检索资产,发现存在的薄弱点和攻击面。

Python 1,888 719 Updated Jul 16, 2025

HackBrowserData的反射模块

Go 177 27 Updated Mar 13, 2021

FastJson全版本Docker漏洞环境(涵盖1.2.47/1.2.68/1.2.80等版本),主要包括JNDI注入及高版本绕过、waf绕过、文件读写、原生反序列化、利用链探测绕过、不出网利用等。从黑盒的角度覆盖FastJson深入利用

Python 1,180 154 Updated Jul 12, 2024

《Linux提权方法论》

801 113 Updated Feb 22, 2023

实时监控网页变化,并发送通知(Monitor web page changes in real time and send notifications)

Python 901 212 Updated Jun 20, 2025

Linux Kernel Hacking

C 749 136 Updated Apr 10, 2024

A curated list of GPT agents for cybersecurity

6,443 716 Updated Jul 21, 2024

云安全利用工具-云平台AK/SK-WEB利用工具,添加AK/SK自动检测资源,无需手动执行,支持云服务器、存储桶、数据库操作

Java 581 64 Updated Dec 19, 2024

Automatically parse Malleable C2 profiled into CrossC2 rebinding library source code

Go 21 3 Updated Feb 13, 2023

CrossC2通信协议API实现

C 84 11 Updated Jul 26, 2021

Cobalt Strike random C2 Profile 修改版(适配腾讯云函数,亚马逊云函数和CrossC2自定义protocol)

Jinja 90 8 Updated Apr 10, 2023

RedGuard is a C2 front flow control tool,Can avoid Blue Teams,AVs,EDRs check.

Go 1,561 213 Updated Aug 20, 2024

nginx WebShell/内存马,更优雅的nignx backdoor

C 325 42 Updated Jan 4, 2024

A list of python tools to help create an OPSEC-safe Cobalt Strike profile.

C++ 510 61 Updated May 19, 2025

Metadata hash incorporating the Rich Header for robustness against packing and other malware tricks

Python 71 6 Updated Aug 14, 2021

SourcePoint is a C2 profile generator for Cobalt Strike command and control servers designed to ensure evasion.

Go 1,193 169 Updated Apr 16, 2025

AutoGeaconC2: 一键读取Profile自动化生成geacon实现跨平台上线CobaltStrike

Go 143 8 Updated Apr 7, 2024

MobaXterm Pro Key Generator, support the old/latest/future versions.

Python 2 Updated Mar 10, 2024

MobaXterm注册机

Python 12 5 Updated Jan 3, 2024

Universal local privilege escalation Proof-of-Concept exploit for CVE-2024-1086, working on most Linux kernels between v5.14 and v6.6, including Debian, Ubuntu, and KernelCTF. The success rate is 9…

C 2,433 333 Updated Apr 17, 2024
Go 2 1 Updated Nov 10, 2024

PoC and Detection for CVE-2024-21626

76 12 Updated Feb 6, 2024

渗透测试C2、支持Lua插件扩展、域前置/CDN上线、自定义profile、前置sRDI、文件管理、进程管理、内存加载、截图、反向代理、分组管理

Go 1,380 208 Updated Feb 28, 2025

A powerful JNDI injection exploitation framework that supports RMI, LDAP and LDAPS protocols, including various bypass methods for high-version JDK restrictions

Java 566 40 Updated Feb 4, 2026

An aggressor script that can help automate payload building in Cobalt Strike

C# 118 18 Updated Jan 22, 2024

fireELF - Fileless Linux Malware Framework

Python 679 114 Updated Apr 17, 2019

Cobalt Strike插件

95 12 Updated Jan 13, 2024
Next