Skip to content
View donky16's full-sized avatar

Block or report donky16

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Protection against Model Serialization Attacks

Python 314 68 Updated Nov 8, 2024

A CAT called tabby ( Code Analysis Tool )

Java 1,300 153 Updated Aug 15, 2024

CodeQL extractor for java, which don't need to compile java source

Python 322 35 Updated Nov 25, 2022

Fast web fuzzer written in Go

Go 12,678 1,294 Updated Jun 30, 2024

An easy-to-learn/use static analysis framework for Java

Java 1,454 175 Updated Sep 22, 2024

CISSP学习笔记

149 65 Updated Nov 21, 2021

Basic vulnerability scanning to see if web servers may be vulnerable to CVE-2023-44487

Python 223 49 Updated Jan 8, 2024

《深入理解CodeQL》Finding vulnerabilities with CodeQL.

1,499 163 Updated Nov 21, 2023

基于无障碍,高级选择器,订阅规则的自定义屏幕点击 Android 应用 | An Android APP with custom screen tapping based on Accessibility, Advanced Selectors, and Subscription Rules

Kotlin 22,046 1,115 Updated Nov 12, 2024

CVE 2023 25690 Proof of concept - mod_proxy vulnerable configuration on Apache HTTP Server versions 2.4.0 - 2.4.55 leads to HTTP Request Smuggling vulnerability.

Dockerfile 268 36 Updated Aug 24, 2024

Open-source code analysis platform for C/C++/Java/Binary/Javascript/Python/Kotlin based on code property graphs. Discord https://discord.gg/vv4MH284Hc

Scala 2,093 288 Updated Nov 12, 2024

Java安全相关的漏洞和技术demo,原生Java、Fastjson、Jackson、Hessian2、XML反序列化漏洞利用和Spring、Dubbo、Shiro、CAS、Tomcat、RMI、Nexus等框架\中间件\功能的exploits以及Java Security Manager绕过、Dubbo-Hessian2安全加固等等实践代码。

Java 2,602 495 Updated Mar 14, 2024

BlazeHTTP 是一款简单易用的 WAF 防护效果测试工具。BlazeHTTP stands as a user-friendly WAF protection efficacy evaluation tool.

Go 667 79 Updated Jul 1, 2024

SpringBoot 相关漏洞学习资料,利用方法和技巧合集,黑盒安全评估 check list

Java 5,786 1,300 Updated Mar 10, 2021

A collection of tiny XSS Payloads that can be used in different contexts. https://tinyxss.terjanq.me

JavaScript 1,934 192 Updated Oct 15, 2021

serve as a reverse proxy to protect your web services from attacks and exploits.

Go 12,778 793 Updated Nov 12, 2024

对权限绕过自动化bypass的burpsuite插件

Java 831 46 Updated Jun 21, 2024

CodeQL Java 全网最全的中文学习资料

CSS 737 83 Updated Mar 18, 2022

简单描述工作内容,帮你生成完整周报

CSS 3,188 476 Updated Oct 15, 2024

Examples for my blog posts.

Java 112 131 Updated Sep 2, 2024

📂 Web File Browser

Go 26,751 3,049 Updated Nov 5, 2024

一个高度可定制化的JNDI和Java反序列化利用工具

447 29 Updated Jan 17, 2023

Burp extension to evade TLS fingerprinting. Bypass WAF, spoof any browser.

Java 1,231 77 Updated Nov 10, 2024

A fuzzing tool for email sender spoofing attack. 👻

Python 217 34 Updated Dec 15, 2021

Java web common vulnerabilities and security code which is base on springboot and spring security

Java 2,417 646 Updated Oct 28, 2024

DOM Clobbering Wiki, Browser Testing, and Payload Generation

JavaScript 43 4 Updated Nov 7, 2024

Grammar-based HTTP/2 fuzzer with mutation ability

Python 42 16 Updated Aug 18, 2022

Soot - A Java optimization framework

Java 2,886 709 Updated Nov 11, 2024

WebSocket 内存马/Webshell,一种新型内存马/WebShell技术

Java 1,410 226 Updated Apr 10, 2023

Capturing SSL/TLS plaintext without a CA certificate using eBPF. Supported on Linux/Android kernels for amd64/arm64.

C 13,417 1,416 Updated Nov 11, 2024
Next