Lists (14)
Sort Name ascending (A-Z)
Starred repositories
The repository of VulnBot: Autonomous Penetration Testing for A Multi-Agent Collaborative Framework.
The repository of TrafficLLM, a universal LLM adaptation framework to learn robust traffic representation for all open-sourced LLM in real-world scenarios and enhance the generalization across dive…
FlowDroid Static Data Flow Tracker
LLM tool to find any potential vulnerabilities in android apps and deobfuscate android app code.
apk文件加固特征检查工具,汇总收集已知特征和手动收集大家提交的app加固特征,目前总计约170条特征,支持40个厂商的加固检测,欢迎大家提交无法识别的app
A neurosymbolic framework for vulnerability detection in code
Automated web vulnerability scanning with LLM agents
Android security insights in full spectrum.
Appshark is a static taint analysis platform to scan vulnerabilities in an Android app.
An easy-to-learn/use static analysis framework for Java
CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security
APKHunt is a comprehensive static code analysis tool for Android apps that is based on the OWASP MASVS framework. Although APKHunt is intended primarily for mobile app developers and security teste…
Android Security Suite for in-depth reconnaissance and static bytecode analysis based on Ghera benchmarks.
ARL官方仓库备份项目+指纹添加工具:ARL(Asset Reconnaissance Lighthouse)资产侦察灯塔系统旨在快速侦察与目标关联的互联网资产,构建基础资产信息库。 协助甲方安全团队或者渗透测试人员有效侦察和检索资产,发现存在的薄弱点和攻击面。
一款专注于 Java 主流 Web 中间件的内存马快速生成工具,致力于简化安全研究人员和红队成员的工作流程,提升攻防效率
🚀Komo, a comprehensive asset collection and vulnerability scanning tool. Komo 一个综合资产收集和漏洞扫描工具,集成了20余款工具,通过多种方式对子域进行获取,收集域名邮箱,进行存活探测,域名指纹识别,域名反查ip,ip端口扫描,web服务链接爬取并发送给xray,对web服务进行POC漏洞扫描,对主机进行主机漏洞扫描。
Thinkphp(GUI)漏洞利用工具,支持各版本TP漏洞检测,命令执行,getshell。
veinmind-tools 是由长亭科技自研,基于 veinmind-sdk 打造的容器安全工具集
A high-quality tool for convert PDF to Markdown and JSON.一站式开源高质量数据提取工具,将PDF转换成Markdown和JSON格式。
使用DoH + ECH实现的简单的Https和Websocket请求demo,可绕过GFW,用于研究流量隐藏技术