Skip to content
View uuic's full-sized avatar

Block or report uuic

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Android real-time display control software

C++ 26,836 3,298 Updated Nov 8, 2025

FastjsonScan4Burp 一款基于burp被动扫描的fastjson漏洞探测插件,可针对数据包中存在json的参数或请求体进行payload测试。旨在帮助安全人员更加便捷的发现、探测、深入利用fastjson漏洞,目前已实现fastjson探测、版本、依赖探测、出网及不出网利用和简易的bypass waf功能

Java 141 9 Updated Mar 13, 2025

Fastjson姿势技巧集合

1,798 351 Updated Oct 20, 2023

ysoserial修改版,着重修改ysoserial.payloads.util.Gadgets.createTemplatesImpl使其可以通过引入自定义class的形式来执行命令、内存马、反序列化回显。

Java 741 121 Updated Jan 11, 2024

Analyze HTTP and DNS requests and create custom DNS records for your subdomain

JavaScript 463 26 Updated Sep 11, 2025

Firebase_Checker is Python tool to analyze APK files and web applications for Firebase-related vulnerabilities. This tool identifies security misconfigurations in Firebase implementations for both …

Python 49 14 Updated Nov 6, 2025

信安之路上涉及的一些脚本

Python 337 91 Updated Mar 31, 2025

A list for Web Security and Code Audit

1,170 221 Updated Dec 3, 2024

API接口管理工具(目前内置微信公众号、微信小程序、企业微信、飞书、钉钉等)

Python 713 48 Updated Oct 15, 2024

项目是根据LandGrey/SpringBootVulExploit清单编写,目的hvv期间快速利用漏洞、降低漏洞利用门槛。

Java 1,891 317 Updated Jan 15, 2024

微信小程序反编译工具,.wxapkg 文件扫描 + 解密 + 解包工具

Go 2,917 597 Updated Jun 19, 2024

Scope aggregation tool for HackerOne, Bugcrowd, Intigriti, YesWeHack, and Immunefi!

Go 1,215 168 Updated Nov 14, 2025

本项目集成了全网优秀的攻防武器工具项目,包含自动化利用,子域名、目录扫描、端口扫描等信息收集工具,各大中间件、cms、OA漏洞利用工具,爆破工具、内网横向、免杀、社工钓鱼以及应急响应、甲方安全资料等其他安全攻防资料。

7,054 1,331 Updated Jul 31, 2025

Find, verify, and analyze leaked credentials

Go 23,194 2,135 Updated Nov 14, 2025

HackerOne资产更新 | 每日更新HackerOne资产,对HackerOne的资产进行爬行和整理,SRC资产更新仅会增加,不会进行删除,每天更新的可以进行差异化对比来获取到新的项目资产范围

Python 314 236 Updated Nov 13, 2025

HTTP parameter discovery suite.

Python 5,931 838 Updated Feb 20, 2025

Gospider - Fast web spider written in Go

Go 2,804 331 Updated Apr 21, 2024

😘 让你“爱”上 GitHub,解决访问时图裂、加载慢的问题。(无需安装)

Python 27,247 2,592 Updated Nov 14, 2025

Standalone utility for service discovery on open ports!

Go 659 55 Updated Mar 4, 2025

⚔️ Web Hacker's Weapons / A collection of cool tools used by Web hackers. Happy hacking , Happy bug-hunting

Ruby 4,222 727 Updated Nov 9, 2025

WEB安全手册(红队安全技能栈),漏洞理解,漏洞利用,代码审计和渗透测试总结。【持续更新】

Python 1,846 272 Updated Nov 7, 2025

Small Tool written based on chaos from projectdiscovery.io

Python 175 46 Updated Oct 19, 2024

Nuclei Templates Collection

Python 1,050 269 Updated May 4, 2025

自动整合全网Nuclei的漏洞POC,实时同步更新最新POC!

2,874 374 Updated Aug 23, 2024

ARL 资产侦察灯塔系统(可运行,添加指纹,提高并发,升级工具及系统,无限制修改版) | ARL(Asset Reconnaissance Lighthouse)资产侦察灯塔系统旨在快速侦察与目标关联的互联网资产,构建基础资产信息库。 协助甲方安全团队或者渗透测试人员有效侦察和检索资产,发现存在的薄弱点和攻击面。

Python 847 353 Updated Nov 13, 2025

ScopeSentry-Cyberspace mapping, subdomain enumeration, port scanning, sensitive information discovery, vulnerability scanning, distributed nodes

Python 1,377 187 Updated May 19, 2025

Ressources for bug bounty hunting

1,872 591 Updated Dec 1, 2022

Mining URLs from dark corners of Web Archives for bug hunting/fuzzing/further probing

Python 2,913 464 Updated Jun 24, 2024

自动化反编译微信小程序,小程序安全评估工具,发现小程序安全问题,自动解密,解包,可还原工程目录,支持Hook,小程序修改

Go 5,452 1,117 Updated Sep 20, 2024

Find way more from the Wayback Machine, Common Crawl, Alien Vault OTX, URLScan, VirusTotal & Intelligence X!

Python 2,316 251 Updated Nov 10, 2025
Next