Skip to content
View feihong-cs's full-sized avatar
💭
I may be slow to respond.
💭
I may be slow to respond.
  • hefei

Block or report feihong-cs

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

TerraformGoat is HXSecurity research lab's "Vulnerable by Design" multi cloud deployment tool.

HCL 520 83 Updated Nov 30, 2022

Chrome Extensions Samples

JavaScript 15,285 8,168 Updated Oct 7, 2024

Coverage-guided, in-process fuzzing for the JVM

Java 1,015 135 Updated Sep 19, 2024

IDEA静态代码安全审计及漏洞一键修复插件

Java 1,003 146 Updated Mar 10, 2022

💀 Generate a bunch of malicious pdf files with phone-home functionality. Can be used with Burp Collaborator or Interact.sh

Python 2,837 379 Updated May 11, 2024

CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security

CodeQL 7,564 1,514 Updated Oct 8, 2024

Kubernetes Goat is a "Vulnerable by Design" cluster environment to learn and practice Kubernetes security using an interactive hands-on playground 🚀

HTML 4,259 701 Updated Sep 28, 2024

GreHack 2021 CodeQL for Java workshop

CodeQL 74 10 Updated Nov 19, 2021

Official source of container configurations, images, and examples for Oracle products and projects

Shell 6,540 5,421 Updated Sep 27, 2024

一份通俗易懂、风趣幽默的Java学习指南,内容涵盖Java基础、Java并发编程、Java虚拟机、Java企业级开发、Java面试等核心知识点。学Java,就认准二哥的Java进阶之路😄

13,101 1,855 Updated Sep 28, 2024

Java 1-21 Parser and Abstract Syntax Tree for Java with advanced analysis functionalities.

Java 5,395 1,147 Updated Oct 7, 2024

Jdk1.8源码解析

Java 1,508 608 Updated May 28, 2022

DNS rebinding toolkit

JavaScript 250 41 Updated May 22, 2023

JDBC Connection URL Attack

Java 388 41 Updated Sep 10, 2021

Prototype Pollution exploits collection

JavaScript 28 7 Updated Aug 8, 2021

Prototype Pollution and useful Script Gadgets

1,388 199 Updated Jan 27, 2024

Find regular expressions which are vulnerable to ReDoS (Regular Expression Denial of Service)

Python 789 51 Updated Feb 9, 2024

Fast and customizable vulnerability scanner based on simple YAML based DSL.

Go 20,198 2,469 Updated Oct 7, 2024

Fastjson姿势技巧集合

1,605 337 Updated Oct 20, 2023

woodpecker框架weblogic信息探测插件

Java 179 25 Updated Mar 23, 2022

《白帽子安全开发实战》配套代码

Go 978 188 Updated Mar 15, 2021

Sreg可对使用者通过输入email、phone、username的返回用户注册的所有互联网护照信息。

HTML 1,233 399 Updated Oct 31, 2019

一个涵盖六个专栏:Spring Boot 2.X、Spring Cloud、Spring Cloud Alibaba、Dubbo、分布式消息队列、分布式事务的仓库。希望胖友小手一抖,右上角来个 Star,感恩 1024

Java 19,017 5,972 Updated Apr 28, 2024

spring boot Fat Jar 任意写文件漏洞到稳定 RCE 利用技巧

Java 680 72 Updated Apr 14, 2021

Look-Ahead Java Deserialization Library

Java 402 69 Updated Jan 7, 2020

清除基于java agent木马

Java 78 7 Updated Apr 12, 2021

❄️冰蝎客户端源码-V4.0.6🔞

Java 877 275 Updated Feb 28, 2023

利用agent hock指定的class,在jar运行周期内,用于跟踪被执行的方法,辅助做一些事情,比如挖洞啊

Java 126 14 Updated Jul 17, 2020

Sample Java web app protected by Java CAS client

Java 1 Updated Aug 30, 2019

Java安全相关的漏洞和技术demo,原生Java、Fastjson、Jackson、Hessian2、XML反序列化漏洞利用和Spring、Dubbo、Shiro、CAS、Tomcat、RMI、Nexus等框架\中间件\功能的exploits以及Java Security Manager绕过、Dubbo-Hessian2安全加固等等实践代码。

Java 2,595 495 Updated Mar 14, 2024
Next