websecurity topic
CTFCrackTools
China's first CTFTools framework.中国国内首个CTF工具框架,旨在帮助CTFer快速攻克难关
Recsech
Recsech is a tool for doing Footprinting and Reconnaissance on the target web. Recsech collects information such as DNS Information, Sub Domains, HoneySpot Detected, Subdomain takeovers, Reconnaissanc...
xss-payload-list
🎯 Cross Site Scripting ( XSS ) Vulnerability Payload List
sql-injection-payload-list
🎯 SQL Injection Payload List
xxe-injection-payload-list
🎯 XML External Entity (XXE) Injection Payload List
Cerberus
一款功能强大的漏洞扫描器,子域名爆破使用aioDNS,asyncio异步快速扫描,覆盖目标全方位资产进行批量漏洞扫描,中间件信息收集,自动收集ip代理,探测Waf信息时自动使用来保护本机真实Ip,在本机Ip被Waf杀死后,自...
ssti-payloads
🎯 Server Side Template Injection Payloads
shell-backdoor-list
🎯 PHP / ASP - Shell Backdoor List 🎯
jwtXploiter
A tool to test security of json web token
cherrybomb
Stop half-done APIs! Cherrybomb is a CLI tool that helps you avoid undefined user behaviour by auditing your API specifications, validating them and running API security tests.