#安全#SafeLine is a self-hosted WAF(Web Application Firewall) / reverse proxy to protect your web apps from attacks and exploits.
#Awesome#有关网络安全的资源链接列表
🎯 Cross Site Scripting ( XSS ) Vulnerability Payload List
Dictionary collection project such as Pentesing, Fuzzing, Bruteforce and BugBounty. 渗透测试、SRC漏洞挖掘、爆破、Fuzzing等字典收集项目。
China's first CTFTools framework.中国国内首个CTF工具框架,旨在帮助CTFer快速攻克难关
A Collection of Notes, Checklists, Writeups on Bug Bounty Hunting and Web Application Security.
CyberSecurityRSS: A collection of cybersecurity rss to make you better!
🔐 Authentication, Authorization, and Accounting (AAA) App and Plugin for Caddy v2. 💎 Implements Form-Based, Basic, Local, LDAP, OpenID Connect, OAuth 2.0 (Github, Google, Facebook, Okta, etc.), SAML...
Stop half-done APIs! Cherrybomb is a CLI tool that helps you avoid undefined user behaviour by auditing your API specifications, validating them and running API security tests.
🎯 XML External Entity (XXE) Injection Payload List
Useful Google Dorks for WebSecurity and Bug Bounty
Twitter vulnerable snippets
An HTTP/HTTPS intercept proxy written in Go.
🎯 PHP / ASP - Shell Backdoor List 🎯
#面试#Some of the questions which i was asked when i was giving interviews for Application/Product Security roles. I am sure this is not an exhaustive list but i felt these questions were important to be as...
🎯 Server Side Template Injection Payloads
Scrape domain names from SSL certificates of arbitrary hosts