Skip to content


  • Arctic Code Vault Contributor


@vulhub @Symbo1 @opensec-cn

About Me

  • Chaitin Tech. Security Strategy Research Team Lead.
  • The creator of Vulhub, which is a pre-built vulnerable environments based on Docker-Compose.
  • Co-Creator of XRAY, which is a popular security analyse tool, the best helper for beginner of Bug Bounty.
  • My Blog, since December 2012.


  • 长亭科技 负责产品策略安全研究
  • Vulhub 创始者,已积累一百余个常用安全漏洞复现环境、复现文档,所有环境均包含开源Dockerfile
  • XRAY 共同开发者,国内最著名的安全分析工具(之一),漏洞猎人好帮手
  • 我的私享小圈子,每天带你学习一点小姿势
  • 我的博客:
  • 我的公众号:『代码审计』,更大众化的知识学习


  1. Pre-Built Vulnerable Environments Based on Docker-Compose

    Dockerfile 6.9k 2.4k

  2. 一款完善的安全评估工具,支持常见 web 安全问题扫描和自定义 poc | 使用之前务必先阅读文档

    Vue 4.5k 920

  3. 各种安全相关思维导图整理收集

    3.5k 1.8k

  4. Mooder是一款开源、安全、简洁、强大的团队内部知识分享平台。

    Python 609 227

  5. php富文本过滤类,XSS Filter

    PHP 146 54

  6. Embed the Duktape JS interpreter in Python, forking and develop based on

    Python 10 4

611 contributions in the last year

Dec Jan Feb Mar Apr May Jun Jul Aug Sep Oct Nov Mon Wed Fri
Activity overview
Contributed to vulhub/vulhub, vulhub/vulhub-org, phith0n/JavaThings and 5 other repositories

Contribution activity

November 2020

Created 1 repository

Created a pull request in cvebase/ that received 1 comment


SaltStack shell injection CVE-2020-16846 POC, reference to Vulhub

+5 −0 1 comment
Started 1 discussion in 1 repository
Answered 1 discussion in 1 repository
28 contributions in private repositories Nov 2 – Nov 28

Seeing something unexpected? Take a look at the GitHub profile guide.

You can’t perform that action at this time.