A Cyber Security Rookie!
> neofetchy5neko@GitHub
-------------------------
OS: Ubuntu 20.04.6 LTS x86_64
Kernel: 5.4.0-26-generic
Shell: zsh 5.8
Pronouns: He/Him
Location: China
Skills: Penetration, CTF
Languages: Java, Python,
C, PHP, MySQL
Learning: Assembly, Reverse, PWN,
CodeAudit, C++
Hobbies: Anime, Novel, Music
Identity: Y5neKO/Y5n3K0 :)CTFer PHP Penetration Anime Music Python Java CodeAudit
Pygmy Killer Whale Security Team
Member • Full-time
Linguagens & Tecnologias: Python, Java, Penetration, CTF
Belonging to the NSU Information Security Laboratory
DBAPPSecurity
Security Service Engineer • Full-time
Linguagens & Tecnologias: Python, Java, Penetration
Chengdu DBAPPSecurity Information Technology Co., Ltd
Unknown Security Company
Penetration Test Engineer • Full-time
Linguagens & Tecnologias: RedTeam, Penetration
Unknown Security Company
🌐 My Website:
- Y5neKO's Blog: Personal blog.
Y5neKO's Blog: Personal blog.Y5neKO's Online Tools: Online Website Toolbox.Y5neKO's Notes: Study note recording.
📚 My Project:
-
qq-xml-ip: QQ automatically detects target IP through xml card.
-
CryptoTool: Integrated encryption and decryption tool.
-
Y5_VulnHub: Personal vulnerability collection project, including reproduction environment, POC, EXP, etc.
-
ShiroEXP: Shiro vulnerability exploitation tool.
-
ClosureVulnScanner: A Python-based comprehensive vulnerability scanner for the web.
-
Mon3trProject: Communication traffic encryption Webshell client.
-
Webshell-Collection: Personal webshell collection project.
-
EXP&POC_Collection: Personal EXP&POC collection project.
-
Y5-tools: An online toolbox.
-
ArknightsPriestess: Arknights open source Java automatic tool AKP.
-
YCryptoTools: A front-end encryption and decryption BurpSuite plugin.
-
SSRFxxk: An SSRF fuzz testing plugin developed based on BurpSuite MontoyaAPI.
-
QuickRedTools: Penetration Testing Quick Start Tool.
-
SSReportTools: A graphical security/penetration testing report generation tool developed based on JavaFX, an essential tool for security and penetration testing enthusiasts looking to slack off.
-
SourcemapTools: Sourcemap leak exploit tool.
-
Suo5forNodejs: A Suo5 memshell for Node.js environments.
-
AMIYA: Scanner.
-
ArknightsPriestessGUI: AKP project companion GUI application.
-
CryptoToolAPI: CryptoTool API service.
-
dbapp-apt-analyzer: APT analysis tool.
-
DecryptDayDownloader: Bypass ad-blocker detection to download files from decrypt.day.
-
dnslog-platform: Self-hosted DNSLog platform.
-
FastjsonScanModify: Modified version of FastjsonScan.
-
glm-cmd: Natural language to shell command tool powered by Zhipu AI.
-
JsRpcEX: Quick-start tool for JsRpc.
-
MingJianAutoResolve: Auto-resolve tool for MingJian vulnerability scan reports.
-
minio-bucket-enum-tools: MinIO bucket enumeration tool.
-
pkgManager: CLI tool for managing macOS .pkg installer packages.
-
qianxin-vuln-tool: Extract vulnerability intelligence from QiAnXin threat platform.
-
RadiantKnightExploit: Comprehensive vulnerability exploitation tool (RKE).
-
SSHConnectTools: SSH connection manager with custom configuration.
-
web_director_viewer: Directory listing vulnerability enumeration script.
-
xxl-job-exec: Quick command execution via xxl-job executor.
-
YSOCK: Web-based tunnel proxy tool.
☢ Vuln IDs
- CVE: CVE-2024-39071, CVE-2024-39072
- CNVD: CNVD-2024-29955, CNVD-2024-39609, CNVD-2024-39888, CNVD-2024-42668, CNVD-2024-43066, CNVD-2024-44216, CNVD-2024-45972, CNVD-2026-23984





