前言
漏洞练习平台
花式扫描器
信息搜索工具
WEB
windows域渗透工具
FUZZ
漏洞利用及攻击框架
中间人攻击及钓鱼
密码破解
二进制及代码分析工具
EXP编写框架及工具
隐写
各类安全资料
各类CTF资源
各类编程资源
Python
福利
甲方安全工程师生存指南
蜜罐
远控
工具合集
https://github.com/WebGoat/WebGoat
https://github.com/WebGoat/WebGoat-Legacy
https://github.com/710leo/ZVulDrill
https://github.com/Medicean/VulApps
https://github.com/RandomStorm/DVWA
https://github.com/Audi-1/sqli-labs
https://github.com/cr0hn/vulnerable-node
https://github.com/cliffe/secgen
https://github.com/nmap/nmap
https://github.com/SkyLined/LocalNetworkScanner
https://github.com/lijiejie/subDomainsBrute
https://github.com/aboul3la/Sublist3r
https://github.com/TheRook/subbrute
https://github.com/infosec-au/altdns
https://github.com/future-architect/vuls
https://github.com/m0nad/HellRaiser
https://github.com/jh00nbr/Routerhunter-2.0
https://github.com/lijiejie/BBScan
https://github.com/EnableSecurity/wafw00f
https://github.com/wilson9x1/fenghuangscanner_v3
https://github.com/fengxuangit/Fox-scan/
https://github.com/n0tr00t/Sreg
https://github.com/sea-god/gitscan
https://github.com/metac0rtex/GitHarvester
https://github.com/darryllane/Bluto
https://github.com/sowish/LNScan
https://github.com/linuz/Sticky-Keys-Slayer
https://github.com/SECFORCE/sparta
https://github.com/SECFORCE/SNMP-Brute
https://github.com/tennc/webshell
https://github.com/brianwrf/hackUtils
https://github.com/rootphantomer/hacktoolsfor_me
https://github.com/firesunCN/BlueLotus_XSSReceiver
https://github.com/evilcos/xssor
https://github.com/shawarkhanethicalhacker/BruteXSS
https://github.com/andresriancho/w3af
https://github.com/sullo/nikto
https://github.com/leonteale/pentestpackage
https://github.com/maurosoria/dirsearch
https://github.com/stasinopoulos/commix
https://github.com/epinna/tplmap
https://github.com/rbsec/sslscan
https://github.com/codejanus/ToolSuite
https://github.com/mthbernardes/ARTLAS
https://github.com/pwnsdx/BadCode
https://github.com/urbanadventurer/whatweb
https://github.com/ciscocsirt/malspider
https://github.com/wpscanteam/wpscan
https://github.com/misterch0c/firminator_backend
https://github.com/sqlmapproject/sqlmap
https://github.com/zt2/sqli-hunter
https://github.com/Chora10/Cknife
https://github.com/lijiejie/GitHack
https://github.com/beefproject/beef
https://github.com/khalilbijjou/WAFNinjahttps://github.com/owtf/wafbypasser
https://github.com/SpiderLabs/ModSecurity
https://github.com/jkbrzt/httpie
https://github.com/firebug/firebug
https://github.com/code-scan/dzscan
https://github.com/wufeifei/cobra
https://github.com/julienbedard/browsersploit
https://github.com/mgeeky/tomcatWarDeployer
https://github.com/nanshihui/Scan-T
https://github.com/ilmila/J2EEScan
https://github.com/gentilkiwi/mimikatz
https://github.com/PowerShellMafia/PowerSploit
https://github.com/clymb3r/PowerShell
https://github.com/putterpanda/mimikittenz
https://github.com/l3m0n/pentest_study
https://github.com/xmendez/wfuzz
https://github.com/lijiejie/htpwdScan
https://github.com/rapid7/metasploit-framework
https://github.com/erevus-cn/pocscan
https://github.com/knownsec/Pocsuite
https://github.com/n0tr00t/Beebeeto-framework
https://github.com/offensive-security/exploit-database
https://github.com/80vul/phpcodz
https://github.com/FiloSottile/CVE-2016-2107
https://github.com/fjserna/CVE-2015-7547
https://github.com/frohoff/ysoserial
https://github.com/foxglovesec/JavaUnserializeExploits
https://github.com/CaledoniaProject/jenkins-cli-exploit
https://github.com/vlad902/hacking-team-windows-kernel-lpe
https://github.com/hxer/vulnapp
https://github.com/GoSecure/php7-opcache-override
https://github.com/XcodeGhostSource/XcodeGhost
https://github.com/secretsquirrel/the-backdoor-factoryhttps://github.com/secretsquirrel/BDFProxyhttps://github.com/byt3bl33d3r/MITMf
https://github.com/intrepidusgroup/mallory
https://github.com/sophron/wifiphisher
https://github.com/shinnok/johnny
https://github.com/AlessandroZ/LaZagne
https://github.com/devttys0/binwalk
https://github.com/quarkslab/binmap
https://github.com/0vercl0k/rp
https://github.com/lillypad/badger
https://github.com/bdcht/amoco
https://github.com/longld/peda
https://github.com/ValdikSS/billgates-botnet-tracker
https://github.com/kevthehermit/RATDecoders
https://github.com/angr/angr
https://github.com/yinwang0/pysonar2
https://github.com/koalaman/shellcheck
https://github.com/ChiChou/etacsufbo
https://github.com/t00sh/rop-tool
https://github.com/Gallopsled/pwntools
https://github.com/zTrix/zio
https://github.com/frida/frida
https://github.com/citronneur/rdpy
https://github.com/abeluck/stegdetect
https://github.com/ClickSecurity/data_hacking
https://github.com/exploitprotocol/mobile-security-wiki
https://github.com/veficos/reverse-engineering-for-beginners
https://github.com/luyg24/IT_security
https://github.com/kbandla/APTnotes
https://github.com/knownsec/KCon
https://github.com/citypw/DNFWAH
https://github.com/phith0n/Mind-Map
https://github.com/SecWiki/sec-chart/tree/294d7c1ff1eba297fa892dda08f3c05e90ed1428
https://github.com/ctfs/write-ups-2016
https://github.com/ctfs/write-ups-2015h
ttps://github.com/ctfs/write-ups-2014
https://github.com/facebook/fbctf
https://github.com/ctfs/resources
https://github.com/bt3gl/My-Gray-Hacker-Resources
https://github.com/zardus/ctf-tools
https://github.com/P1kachu/v0lt
https://github.com/bayandin/awesome-awesomeness
https://github.com/denysdovhan/bash-handbook
https://github.com/jobbole/awesome-python-cn
https://github.com/xirong/my-git
https://github.com/android-cn/android-open-project
https://github.com/vinta/awesome-python
https://github.com/VerbalExpressions/JSVerbalExpressions
https://github.com/VerbalExpressions/
https://github.com/pyinvoke/invoke
https://github.com/pyinstaller/pyinstaller
https://github.com/Veil-Framework/Veil-Evasion
https://github.com/orf/cyborg
https://github.com/CoreSecurity/impacket
https://github.com/kennethreitz/requests
https://github.com/mahmoud/boltons
https://github.com/binux/pyspider
https://github.com/east520/AutoGetRedEnv
https://github.com/geeeeeeeeek/WeChatLuckyMoney
https://github.com/yangyangwithgnu/hardseed
https://github.com/thomaspatzke/WASE
https://github.com/wgliang/logcool
https://github.com/Kozea/wdb
https://github.com/aramosf/recoversqlite/
https://github.com/zxsecurity/gpsnitch
https://github.com/biggiesmallsAG/nightHawkResponse
https://github.com/FallibleInc/security-guide-for-developers
https://github.com/juliocesarfort/public-pentesting-reports
https://github.com/rfxn/linux-malware-detect
https://github.com/facebook/osquery
https://github.com/cuckoosandbox/cuckoo
https://github.com/Netflix/Scumblr
https://github.com/google/grr
https://github.com/ossec/ossec-hids
https://github.com/mozilla/mig
https://github.com/sleuthkit/sleuthkit
https://github.com/desaster/kippo
https://github.com/paralax/awesome-honeypots
https://github.com/micheloosterhof/cowrie
https://github.com/awhitehatter/mailoney
https://github.com/mushorg/glastopf
https://github.com/jordan-wright/elastichoney
https://github.com/atiger77/Dionaea
https://github.com/byt3bl33d3r/gcat
https://github.com/UbbeLoL/uRAT
https://github.com/hussein-aitlahcen/BlackHole
https://github.com/torque59/Nosql-Exploitation-Framework
https://github.com/missDronio/blindy
https://github.com/fengxuangit/Fox-scan
https://github.com/NetSPI/PowerUpSQL
https://github.com/JohnTroony/Blisqy
https://github.com/ron190/jsql-injection
https://github.com/Hadesy2k/sqliv
https://github.com/s0md3v/sqlmate
https://github.com/m8r0wn/enumdb
https://github.com/9tail123/wooscan
https://github.com/lijiejie/htpwdScan
https://github.com/ysrc/F-Scrack
https://github.com/Mebus/cupp
https://github.com/netxfly/crack_ssh
https://github.com/LandGrey/pydictor
https://github.com/shengqi158/weak_password_detect
https://github.com/s0md3v/Blazy
https://github.com/MooseDojo/myBFF
https://github.com/rapid7/IoTSeeker
https://github.com/shodan-labs/iotdb
https://github.com/googleinurl/RouterHunterBR
https://github.com/scu-igroup/telnet-scanner
https://github.com/viraintel/OWASP-Nettacker
https://github.com/threat9/routersploit
https://github.com/shawarkhanethicalhacker/BruteXSS
https://github.com/1N3/XSSTracer
https://github.com/0x584A/fuzzXssPHP
https://github.com/chuhades/xss_scan
https://github.com/BlackHole1/autoFindXssAndCsrf
https://github.com/shogunlab/shuriken
https://github.com/s0md3v/XSStrike
https://github.com/stamparm/DSXS
https://github.com/ysrc/xunfeng
https://github.com/laramies/theHarvester
https://github.com/x0day/Multisearch-v2
https://github.com/Ekultek/Zeus-Scanner
https://github.com/0xbug/Biu-framework
https://github.com/metac0rtex/GitHarvester
https://github.com/shengqi158/svnhack
https://github.com/repoog/GitPrey
https://github.com/0xbug/Hawkeye
https://github.com/lianfeng30/githubscan
https://github.com/UnkL4b/GitMiner
https://github.com/lijiejie/GitHack
https://github.com/dxa4481/truffleHog
https://github.com/1N3/Goohak
https://github.com/UKHomeOffice/repo-security-scanner
https://github.com/FeeiCN/GSIL
https://github.com/MiSecurity/x-patrol
https://github.com/1N3/BlackWidow
https://github.com/anshumanbh/git-all-secrets
https://github.com/s0md3v/Photon
https://github.com/he1m4n6a/findWebshell
https://github.com/Tencent/HaboMalHunter
https://github.com/PlagueScanner/PlagueScanner
https://github.com/nbs-system/php-malware-finder
https://github.com/emposha/PHP-Shell-Detector/
https://github.com/erevus-cn/scan_webshell
https://github.com/emposha/Shell-Detector
https://github.com/m4rco-/dorothy2
https://github.com/droidefense/engine
https://github.com/lcatro/network_backdoor_scanner
https://github.com/fdiskyou/hunter
https://github.com/BlackHole1/WebRtcXSS
https://github.com/ring04h/wyportmap
https://github.com/ring04h/weakfilescan
https://github.com/EnableSecurity/wafw00f
https://github.com/rbsec/sslscan
https://github.com/urbanadventurer/whatweb
https://github.com/tanjiti/FingerPrint
https://github.com/nanshihui/Scan-T
https://github.com/OffensivePython/Nscan
https://github.com/ywolf/F-NAScan
https://github.com/ywolf/F-MiddlewareScan
https://github.com/maurosoria/dirsearch
https://github.com/x0day/bannerscan
https://github.com/RASSec/RASscan
https://github.com/3xp10it/bypass_waf
https://github.com/3xp10it/xcdn
https://github.com/Xyntax/BingC
https://github.com/Xyntax/DirBrute
https://github.com/zer0h/httpscan
https://github.com/lietdai/doom
https://github.com/chichou/grab.js
https://github.com/Nitr4x/whichCDN
https://github.com/secfree/bcrpscan
https://github.com/mozilla/ssh_scan
https://github.com/18F/domain-scan
https://github.com/ggusoft/inforfinder
https://github.com/boy-hack/gwhatweb
https://github.com/Mosuan/FileScan
https://github.com/Xyntax/FileSensor
https://github.com/deibit/cansina
https://github.com/0xbug/Howl
https://github.com/mozilla/cipherscan
https://github.com/xmendez/wfuzz
https://github.com/s0md3v/Breacher
https://github.com/ztgrace/changeme
https://github.com/medbenali/CyberScan
https://github.com/m0nad/HellRaiser
https://github.com/scipag/vulscan
https://github.com/jekyc/wig
https://github.com/eldraco/domain_analyzer
https://github.com/cloudtracer/paskto
https://github.com/zerokeeper/WebEye
https://github.com/m3liot/shcheck
https://github.com/aipengjie/sensitivefilescan
https://github.com/fnk0c/cangibrina
https://github.com/n4xh4ck5/CMSsc4n
https://github.com/Ekultek/WhatWaf
https://github.com/dzonerzy/goWAPT
https://github.com/blackye/webdirdig
https://github.com/GitHackTools/BillCipher
https://github.com/boy-hack/w8fuckcdn
https://github.com/boy-hack/w11scan
https://github.com/Nekmo/dirhunt
https://github.com/blackye/Jenkins
https://github.com/code-scan/dzscan
https://github.com/chuhades/CMS-Exploit-Framework
https://github.com/lijiejie/IIS_shortname_Scanner
https://github.com/riusksk/FlashScanner
https://github.com/coffeehb/SSTIF
https://github.com/epinna/tplmap
https://github.com/cr0hn/dockerscan
https://github.com/m4ll0k/WPSeku
https://github.com/rastating/wordpress-exploit-framework
https://github.com/ilmila/J2EEScan
https://github.com/riusksk/StrutScan
https://github.com/D35m0nd142/LFISuite
https://github.com/0x4D31/salt-scanner
https://github.com/tijme/angularjs-csti-scanner
https://github.com/irsdl/IIS-ShortName-Scanner
https://github.com/swisskyrepo/Wordpresscan
https://github.com/CHYbeta/cmsPoc
https://github.com/rudSarkar/crlf-injector
https://github.com/3gstudent/Smbtouch-Scanner
https://github.com/utiso/dorkbot
https://github.com/OsandaMalith/LFiFreak
https://github.com/mak-/parameth
https://github.com/Lucifer1993/struts-scan
https://github.com/hahwul/a2sv
https://github.com/NullArray/DorkNet
https://github.com/NickstaDB/BaRMIe
https://github.com/RetireJS/grunt-retire
https://github.com/kotobukki/BDA
https://github.com/jagracey/Regex-DoS
https://github.com/milesrichardson/docker-onion-nmap
https://github.com/Moham3dRiahi/XAttacker
https://github.com/lijiejie/BBScan
https://github.com/almandin/fuxploider
https://github.com/Ice3man543/SubOver
https://github.com/Jamalc0m/wphunter
https://github.com/retirejs/retire.js
https://github.com/3xp10it/xupload
https://github.com/mobrine-mob/M0B-tool
https://github.com/rezasp/vbscan
https://github.com/MrSqar-Ye/BadMod
https://github.com/Tuhinshubhra/CMSeeK
https://github.com/cloudsploit/scans
https://github.com/radenvodka/SVScanner
https://github.com/rezasp/joomscan
https://github.com/6IX7ine/djangohunter
https://github.com/savio-code/fern-wifi-cracker/
https://github.com/m4n3dw0lf/PytheM
https://github.com/P0cL4bs/WiFi-Pumpkin
https://github.com/MisterBianco/BoopSuite
https://github.com/DanMcInerney/LANs.py
https://github.com/besimaltnok/PiFinger
https://github.com/derv82/wifite2
https://github.com/sowish/LNScan
https://github.com/SkyLined/LocalNetworkScanner
https://github.com/wufeifei/cobra
https://github.com/OneSourceCat/phpvulhunter
https://github.com/Qihoo360/phptrace
https://github.com/ajinabraham/NodeJsScan
https://github.com/shengqi158/pyvulhunter
https://github.com/presidentbeef/brakeman
https://github.com/python-security/pyt
https://github.com/m4ll0k/WPSploit
https://github.com/emanuil/php-reaper
https://github.com/toyakula/luna
https://github.com/Manisso/fsociety
https://github.com/boy-hack/w9scan
https://github.com/YalcinYolalan/WSSAT
https://github.com/AmyangXYZ/AssassinGo
https://github.com/jeffzh3ng/InsectsAwake
https://github.com/m4ll0k/Galileo
https://github.com/joker25000/Optiva-Framework
https://github.com/theInfectedDrake/TIDoS-Framework
https://github.com/Neo23x0/Loki
https://github.com/w3h/icsmaster/tree/master/nse
https://github.com/OpenNetworkingFoundation/DELTA
作者:Yunying
好文推荐