A Java library to parse JVM bytecode, simulate the stack and extract as much information as possible
倉庫
frohoff 的倉庫
A scoreboard for Security CTF events
CTFs as you need them
Spoofs a DHCP server and exploits all clients vulnerable to the 'ShellShock' bug
Empire is a PowerShell and Python post-exploitation agent.
Choose the browser on the click of a link
Java bytecode analysis/deobfuscation tool
The cheat sheet about Java Deserialization vulnerabilities
JavaPayload is a collection of pure Java payloads to be used for post-exploitation from pure Java exploits or from common misconfigurations (like not password protected Tomcat manager or debugger port).
Official OWASP Top 10 Document Repository
Slide deck from AppSecCali 2015 Talk "Marshalling Pickles: how deserializing objects will ruin your day"
Automatically switch to a darker or a lighter version of an element depending on the brightness of images behind it.
Docker implemented in around 100 lines of bash