Skip to content
View hello-noob's full-sized avatar

Block or report hello-noob

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

An enterprise friendly way of detecting and preventing secrets in code.

Python 4,373 537 Updated Mar 13, 2025

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

OCaml 13,859 858 Updated Jan 16, 2026

Find secrets with Gitleaks 🔑

Go 24,592 1,882 Updated Jan 8, 2026

Find, verify, and analyze leaked credentials

Go 24,127 2,187 Updated Jan 16, 2026

Credentials recovery project

Python 10,598 2,116 Updated Sep 18, 2025

Seatbelt is a C# project that performs a number of security oriented host-survey "safety checks" relevant from both offensive and defensive security perspectives.

C# 4,434 756 Updated Jan 10, 2025

哈希值计算工具,批量计算/批量校验/查找重复文件/改变哈希值等,支持集成到系统右键菜单

C# 501 30 Updated Jan 3, 2026

Web site navigation

699 69 Updated Apr 16, 2025

clash for windows汉化版. 提供clash for windows的汉化版, 汉化补丁及汉化版安装程序

JavaScript 27,497 3,186 Updated Jun 26, 2025

A modern GUI client based on Tauri, designed to run in Windows, macOS and Linux for tailored proxy experience

TypeScript 92,441 6,775 Updated Jan 16, 2026

🚀 2024-至今 1Day 漏洞 PoC 深度研究与复现归档。涵盖 OA、ERP、安防、数通、大模型及容器等 高价值资产漏洞,实战导向,助力安全研究与合规检测。

Python 379 102 Updated Jan 16, 2026

Browser extension for opening lists of URLs built with Vue.js on top of WebExtension with cross-browser support

TypeScript 314 66 Updated Apr 17, 2025

pocsuite3 is an open-sourced remote vulnerability testing framework developed by the Knownsec 404 Team.

Python 3,822 782 Updated Feb 28, 2025

Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.

PHP 8,781 2,126 Updated Nov 10, 2023

哥斯拉

4,315 568 Updated Jul 17, 2024

GodzillaNodeJsPayload

JavaScript 156 18 Updated Dec 10, 2025

js主动参数提取与构造工具

JavaScript 51 2 Updated Dec 22, 2025

DeepAudit:人人拥有的 AI 黑客战队,让漏洞挖掘触手可及。国内首个开源的代码漏洞挖掘多智能体系统。小白一键部署运行,自主协作审计 + 自动化沙箱 PoC 验证。支持 Ollama 私有部署 ,一键生成报告。支持中转站。​让安全不再昂贵,让审计不再复杂。

Python 3,810 417 Updated Jan 16, 2026

Burp extension to fuzz/brute force GenAI/LLM prompts using a list of various payloads.

Java 26 1 Updated Sep 4, 2025

Fully autonomous AI hacker to find actual exploits in your web apps. Shannon has achieved a 96.15% success rate on the hint-free, source-aware XBOW Benchmark.

TypeScript 3,916 558 Updated Jan 17, 2026

Kingfisher is a blazingly fast and highly accurate tool for secret detection and live validation across files, Git repos, GitHub, GitLab, Azure Repos, BitBucket, Gitea, AWS S3, Docker images, Jira,…

Rust 767 54 Updated Jan 17, 2026

rep+ — Burp-style HTTP Repeater for Chrome DevTools with built‑in AI to explain requests and suggest attacks

JavaScript 1,374 171 Updated Jan 16, 2026

面向红队的, 高性能高度自由可拓展的自动化扫描引擎 | A highly controllable and extensionable automated scanning engine for red teams

Go 1,980 184 Updated Jan 10, 2026

一个方便逆向人员进行渗透的 burp 插件

JavaScript 120 8 Updated Sep 3, 2024

致命精准的红队作战兵器。模块化集成资产发现、漏扫与利用,重新定义渗透测试工作流 (Workflow) 的新一代安全平台。

146 5 Updated Jan 12, 2026

基于Chrome开发者协议(CDP)的AI自动化JavaScript逆向分析工具

Python 384 107 Updated Nov 24, 2025

Autoswagger by Intruder - detect API auth weaknesses

Python 1,810 159 Updated Aug 8, 2025

burpsuit插件,解析swagger/openapi接口文档并进行请求,模拟参数方便渗透测试人员快速发现可用接口 (最新使用源码编译,release有时候没空搞)

Java 39 Updated Oct 23, 2025

Proxifier Alternative to redirect any Windows/MacOS TCP and UDP traffic to HTTP/Socks5 proxy

Swift 1,174 102 Updated Jan 11, 2026
Next