本
文
摘
要
个人技术博客
国内:
http://blog.csdn.net/qq_27446553/ (qq_27446553博客)
http://0x007.blog.51cto.com/6330498/1628943 (0x007博客)
m/(test404博客)
https://evi1cg.me/(evilcg博客)
http://ver007.com/(ver007博客)
http://cciez *** . *** /(颖奇博客)
http://helloeveryone.blog.51cto.com/(牛磊博客)
http://lu4n.com/(lun博客)
http://blog.neargle.com(neargle博客)
https://lightrains.org(lightrains博客)
https://imlonghao.com/(imlonghao博客)
http
hlinge博客)
e博客)
客)
http://blog.leanote.com/thorns(leanote博客)
http://linux.im/(im博客)
htt
http://joychou.org (joychou博客)
http://0cx.cc/ (0cx博客)
http://hacktech.cn/(hacketech博客)
m(hack1990博客)
http://xia0yu.win/(xia0yu博客)
http://littlehann.cnblogs.com/ (littlehann博客)
http://lonelyrain.me/(lonelyrain博客)
http://xdxd.love/(xdxd博客)
http://www.leesec.com/(leesce博客)
https://bl4ck.in/(b14ck博客)
t.com/(n0tr00t博客)
https://3gstudent.github.io/(三好学生博客)
.com/( nxadmin博客 )
http://p2j.cn/( 园长博客)
http://le4f.net/(le4f博客)
fe.net/(程序人生博客)
http://evilcos.me/(余玄博客)
ools (bugsec博客)
http://ecma.io/(ecma博客)
https://ricterz.me/(ricterz博客)
http://yaseng.org(yaseng博客)
http://avfisher.win/(安全小飞侠博客)
ie.com/(lijiejie博客)
http://secoff.net/(secoff博客)
http://twi1ight.com/(twi1ight博客)
https://rinige.com (ringige博客)
http://o0xmuhe.me/page/2/ (o0xmuhe博客)
lotus.net/ (蓝莲花战队博客)
http://appleu0.sinaapp.com/( appleu0博客)
http
https://phpinfo.me/ ( phpinfo博客)
http://f4le.com/ ( f4le博客)
ec.com/ (03sec博客)
http://blog.nuptzj.cn/ (nuptzj博客)
)
https://tom0li.github.io(tom0li博客)
自等待博客)
https://wujunze.com/(wujunze博客)
https://ht-sec.org(昊天博客)
http://docs.hackinglab.cn/(hackinglab博客)
h
http://hk-xg. *** /(hk-xg博客 )
)
http://piaoyu.org/(piaoyu博客)
http://defcon.cn/script(defcon博客)
http://www.52bug.cn/(吾爱漏洞博客)
残博客)
http://blog.knownsec.com/(知道创宇博客)
http://0ke.org/( 0ke博客 )
http://www.storysec.com/(影风s Blog)
http://rcoil.me/(rcoil博客)
https://perseus.codes/(perseus博客)
http://xiao106347.blog.163.com/(小刘kali博客)
http://blog.sycsec.com/(三叶草博客)
http://iscc.gxu.edu.cn/index.php/Index/start (iscc博客)
http://rootkiter.com/EarthWorm/(rootkiter博客)
https://ha.cker.in/(cker博客)
http://3xp10it.cc/(3xp10it博客)
http://wolvez.club/(lostwolf博客)
http://thief.one(thief博客)
http://simeon.blog.51cto.com/(simeon博客)
http://javaweb.org/(javaweb博客)
http://qqhack8.blog.163.com/(k8博客)
http://das.scusec.org/(scusec博客)
http://blog.safebuff.com/(x17dev博客)
http://k1p4ss.sinaapp.com/(k1p4ss博客)
h
国外:
aster53博客)
http://pen-testing.sans.org/blog/pen-testing(sans渗透测试博客)
https://digi.ninja/(digi渗透测试博客)
htt
http://nullsecurity.net/tools.html(nullsecurity渗透工具博客)
http:/
.com/(commonexploits渗透测试博客)
https://adsecurity.org/(AD域渗透测试博客)
be渗透视频教程博客)
https://adsecurity.org/(AD域渗透博客)
http://blog.gentilkiwi.com/(mimikazhi博客)
https://blog.0x80.org/(汽车安全博客)
http://sectools.org/tag/web-scanners/(安全工具下载博客)
https://blog.netspi.com/(SQL注入技能博客)
ection-cheat-sheet/(注入技能表博客)
https://wn.com/http_header_injectionds(http头注入博客)
/blog/(路由安全博客)
https://fail0verflow.com/(硬件大牛博客)
ngineer.org/(社会工程学博客)
博客)
http://http-tunnel.sourceforge.net/ (http-tunnel反向代理博客)
https://zmap.io/(zmap博客)
g/(thc博客)
http://mydowndown.com/y2down (youtuble视频下载)
http://securityxploded.com/download.php(国外密码工具大全)
https://pentest.blog/(渗透测试博客)
客文章知识库)
http://fuzzysecurity.com/tutorials/16.html(fuzzysecurity博客)
https://artkond.com/2017/03/23/pivoting-guide/(artkond博客)
https://legalhackers.com/(legalhackers博客)
https://blog.quarkslab.com/(quarkslab博客)
https://foxglovesecurity.com/ (foxglovesecurity博客)
http://carnal0wnage.attackresearch.com/(attackresearch博客)
https://room362.com/(room362博客)
http://blog.portswigger.net/(burpsuit博客)
https://blog.skullsecurity.org/(关于CTF)
https://community.rapid7.com/community/metasploit/blog(MSF官方博客)
http://blog.gdssecurity.com/(gdssecurity博客)
https://websec.wordpress.com(websec博客)
http://bernardodamele.blogspot.com/(blogspot博客)
http://laramies.blogspot.com/(blogspot博客)
https://clymb3r.wordpress.com/ (clymb3r博客)
http://pentestmonkey.net/blog(pentestmonkey博客)
https://sensepost.com/blog/(sensepost博客)
http://exploit.co.il/blog/(exploit博客)
http://sirdarckcat.blogspot.com/(sirdarckcat博客)
http://reusablesec.blogspot.com/(reusablesec博客)
an博客)
https://securityreliks.wordpress.com/(securityreliks博客)
http://ihazomgsecurityskillz.blogspot.com/(linux内核)
https://memset.wordpress.com/(memset博客)
http://gynvael.coldwind.pl/?blog=1&lang=en(gynvael博客)
https://blog.g0tmi1k.com/(g0tmi1k博客)
https://digi.ninja/(digi博客)
http://pentestit.com/(pentestit博客)
ongeek.com/(irongeek博客)
https://bitvijays.github.io/(bitvijays博客)
index.php(国外黑客论坛)
在线知识
http://wiki.ioin.in/(安全文库)
http://bobao.360.cn/learning/index(安全客知识库)
https://www.hackfun.org/kali-tools/kali-tools-zh.html( KALI工具使用说明)
/details(burpsuit中文指南)
http:
et/(源代码)
http://paper.seebug.org/ (seebug安全知识库)
https://bowen.navisec.it/(安全文库)
http://expku.com/(国内exp搜索大全)
论坛与导航
fo/(安全圈导航)
http://navisec.it/ (navisec导航)
http://cmcc.ml/(cmcc网址安全导航)
http:
https://xianzhi.aliyun.com/forum/read/723.html(先知社区)
http://bbs.ichunqiu.com/(爱春秋论坛)
http://hackinglab.cn/(hack实验室)
https://forum.90sec.org/(90sec论坛)
https://forum.exploit.in/(exploit论坛)
http://forum.exetools.com/index.php(explotools论坛)
x.com/(v2ex程序员社区)
安全资讯
https://www.secpulse.com/(安全脉搏安全资讯)
-wiki.com/(wiki安全资讯)
漏洞预警与exp查询
http://wy.hx99.net/(乌云知识库)
https://loudong.sjtu.edu.cn/(教育行业安全漏洞)
http://webscan.360.cn/vul(网站常见漏洞)
https://cxsecurity.com/wlb/(国外漏洞)
http://blogs.360.cn/(360漏洞技术分享)
http://xteam.baidu.com/(百度实验室 )
http://blog.nsfocus.net/(绿盟漏洞预警博客)
/(漏洞测试平台)
https://technet.microsoft.com/en-us/library/security/mt637763.aspx(微软exp版本号列表)
https://bugs.chromium.org/p/project-zero/issues/list(微软漏洞下载搜索)
ht
http://exploit.linuxnote.org/(国内linux内核EXP查询)
https://packetstormsecurity.com/(packetstormsecurity的exp查询)
http://cve.mitre.org/(漏洞编号查询)
om/(安全团队)
http://www.guninski.com/(guninski的exp查询)
http://cxsecurity.com/(漏洞库)
http://www.sebug.net/vuldb/vulnerabilities(WEB漏洞库查询)
http://0day5.com/(WEB漏洞时代)
ck的exp查询)
http://cn.0day.today/(oday)
http://xssor.io/ (xss poc大全)
在线Web扫描器
http://webscan.360.cn/
http://site.safedog.cn/index.html
CTF训练
http://bobao.360.cn/ctf/index(360CTF训练营 )
http://hackinglab.cn/(网络安全对抗平台 )
https://pwnhub.cn/(CTF比赛)
ht
http://bobao.360.cn/ctf/(360CTF社区)
https://ctftime.org/(ctftime社区)
http:
githud项目
https://github.com/ctfs/(CTFwrite)
https://github.com/powershellempire/empire(powershllempire项目)
https://github.com/adaptivethreat/EmPyre(EmPyre项目)
https://github.com/HarmJ0y/Malleable-C2-Profiles(Malleable-C2-Profiles项目)
https://github.com/Veil-Framework/Veil-Evasion(Veil-Evasion免杀项目)
https://github.com/offensive-security(offensive-security项目)
https://github.com/secretsquirrel/the-backdoor-factory/(the-backdoor-factory项目)
https://github.com/Veil-Framework/Veil-Evasion/(Veil-Evasion免杀项目)
https://github.com/x3omdax/PenBox(安全测试框架)
https://github.com/SecWiki(安全文库)
在线常用工具
http://ip.fbi *** .com/(真实IP地址查询地址)
https://phpinfo.me/domain/(子域名在线爆破)
x.html(在线子域名爆破)
https://phpinfo.me/bing.php(在线c段查询)
https://dnsdb.io/zh-cn/(在线C段查询2)
.com/zh/(一次性使用邮箱)
http://objectif-securite.ch/(LM绿色)
http://tools88.com/safe/vnc.php(在线VNC绿色)
http://tool.chacuo.net/cryptdes(在线解密加密)
http://xss.cnit.pro/(cnit *** )
线LMHASH绿色)
http://toolbar.netcraft.com(很好的域名搜索引擎)
http://who.is ( 域名解析记录很好使)
https://cirt.net/passwords(常用设备密码字典)
(勒索病毒解密工具)
国内社工库
http://cha.hx99.net/(华西社工库)
http://s.70sec.com/(70sec社工库)
http://so.moonsec.com/index.php(暗月社工库)
http://dnf.mima.re/index.php(DNF密码社工库)
http://qq.findmima.com/(qq密码)
https://boy.findmima.com/(查找密码社工库)
http://163.donothackme.club/(163邮箱社工库)
国外社工库
https://haveibeenpwned.com/
联合账号查询
http://reg007.com(查询邮箱已注册过的网址)
https://qqgroup.insight-labs.org/ (群关系查询)
http://qun.findmima.com/(群关系)
http://toolsapp.duapp.com/randpw.html(反社工随机密码)
大数据及端口服务查询
http
https:
http://cn.bing.com/ (必应查询)
https://searchcode.com/(代码泄露)
CDN查询真实的多ping
二级域名有可能是真实IP或者C段,只要主域名绑定真实IP(hosts.int文件下绑定)去访问,能访问则是真实IP
邮件服务器不会做cdn,一般和同网站是属于同一个C段,然后用namp扫描整个C段,筛选出开放80的端口。
https://a *** .ca.com/en/ping.php
http://toolbar.netcraft.com/site_report
http://viewdns.info/iphistory/?domain=
http://whoisrequest.com/history/
http://map.norsecorp.com/#/
http://crimeflare.com(查cloudflare真实ip百试不爽)
常用在线Web工具
http://tool.chinaz.com/(站长工具)
http://whatweb.net/(网站指纹查询)
工具)
MD5在线检查
http://pmd5.com/
http://md5decoder.org/
t00ls.net/domain.html
https://md5db.net/decrypt
http://md5.itxueke.com/
http://md5decryption.com/
http://hash-killer.com/
https://crackstation.net/
http://hashchecker.de/find.html
http://www.objectif-securite.ch/ophcrack.php
http://cracker.offensive-security.com/index.php
http://freerainbowtables.mirror.garr.it/mirrors/freerainbowtables/md5/(彩虹表)
http://md5.gromweb.com/
http://md5online.org/
http://tw.freemd5.com/
http://hashtoolkit.com/
https://hashkiller.co.uk/md5-decrypter.aspx
http://neeao.com/tools/decode/index_eval.php(gzinflate解密)
在线病毒检测
http://appscan.360.cn/ (安卓检测)
https://b-chao.com/ (安卓检测)
https://malwr.com/submission/(病毒分析)
https://www.virustotal.com/(病毒分析2)
http://virusview.net/search/inde(病毒查询 )
转载自:Tools
原创作者:backlion