¯\_(ツ)_/¯ (@hvqzao)
  • Stars
    star
    741
  • Global Rank 39,723 (Top 2 %)
  • Followers 121
  • Following 30
  • Registered almost 11 years ago
  • Most used languages
    Java
    42.9 %
    Python
    28.6 %
    C
    14.3 %
    JavaScript
    4.8 %
    Shell
    4.8 %
    PHP
    4.8 %

Top repositories

1

foolav

Pentest tool for antivirus evasion and running arbitrary payload on target Wintel host
C
175
star
2

burp-wildcard

Burp extension intended to compact Burp extension tabs by hijacking them to own tab.
Java
127
star
3

liffy

Local File Inclusion Exploitation Tool (mirror)
Python
123
star
4

foolavc

foolav successor - loads DLL, executable or shellcode into memory and runs it effectively bypassing AV
C
110
star
5

report-ng

Generate MS Word template-based reports with HP WebInspect / Burp Suite Pro input, own custom data and knowledge base.
Python
65
star
6

burp-flow

Extension providing view with filtering capabilities for both complete and incomplete requests from all burp tools.
Java
46
star
7

java-deserialize-webapp

Vulnerable webapp testbed
Java
19
star
8

burp-token-rewrite

Burp extension for automated handling of CSRF tokens
Java
16
star
9

x

Pentest environment scaffolding. Supporting role in Kali Linux.
Java
12
star
10

ipport

Small subset of Bash and Python scripts which could be used for rapid network recon
Python
11
star
11

burp-second-order

Extension for semi-automated search for second order issues in webapps
Java
8
star
12

jgantt

jGantt plugin for Atlassian JIRA Kanban board
JavaScript
7
star
13

evadeav

AV evasion experiment (fail inspired by some blogpost)
C
6
star
14

sqli-testbed

SQL injection testbed designed for sqlmap practice (MySQL backend)
PHP
3
star
15

burp-negotiate

Kerberos / SPNEGO authentication for BurpSuite
Java
3
star
16

burp-csrf-handling

CSRF tokens handling Burp extension
Python
3
star
17

java-rmi

Example Java RMI client-server both with and without SSL support
Java
2
star
18

ve

Created to provide fast provisioning - automated download, build and set up Python or Node.JS virtual environments.
Shell
2
star
19

http-flood-netty

Trival HTTP Flood implementation based on Java Netty Framework
Java
1
star
20

ftcliserv

File Transfer Client-Server
Python
1
star
21

endec

Tiny utility to encrypt and decrypt text data using aes-256-cbc algorithm.
Python
1
star