Skip to content
View SummerSec's full-sized avatar
👋
Working
👋
Working

Organizations

@NVIDIAGameWorks @wgpsec @doocs @treey567 @Programming-With-Love @HMUniversity @0x727

Block or report SummerSec

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
SummerSec/README.md

𝐇𝐞𝐥𝐥𝐨 𝐭𝐡𝐞𝐫𝐞, 𝐟𝐞𝐥𝐥𝐨𝐰 <𝚌𝚘𝚍𝚎𝚛𝚜/>!

Typing SVG gifOS

GitHub SummerSec Twitter SecSummers


Popular Repositories 🎬

ShiroAttack2shiro反序列化漏洞综合利用,包含(回显执行命令/注入内存马)修复原版中NoCC的问题 https://github.com/j1anFen/shiro_attack2451 ⭐
SpringBootExploit项目是根据LandGrey/SpringBootVulExploit清单编写,目的hvv期间快速利用漏洞、降低漏洞利用门槛。1903 ⭐
JavaLearnVulnerabilityJava漏洞学习笔记 Deserialization Vulnerability944 ⭐
learning-codeqlCodeQL Java 全网最全的中文学习资料798 ⭐
SpringExploit🚀 一款为了学习go而诞生的漏洞利用工具451 ⭐
AgentInjectTool改造BeichenDream/InjectJDBC加入shiro获取key和修改key功能280 ⭐
Static-Analysis静态分析笔记 Static-Analysis-Notes 程序分析笔记 资源分享187 ⭐
LookupInterfaceCodeQL 寻找 JNDI利用 Lookup接口166 ⭐
BurpBountyProfilesBurpBounty插件的配置文件收集项目144 ⭐
SPATool静态程序分析工具 主要生成方法的CFG和.java文件的AST 134 ⭐
BypassSuperBypass 403 or 401 or 404103 ⭐
BlogPapersSummerSec58 ⭐
Total Stars 7814 ⭐

Latest Posts 📝

🌋 别让大模型_想太多_:SKILL开发中的语义陷阱与抗幻觉设计

🎷 VMWare-Workspace-ONE-Access-Auth-Bypass

👆 Spring-Framework-RCE-CVE-2022-22965漏洞分析

🏺 相似度算法调研

🐆 CVE-2022-33891 Apache Spark shell command injection

🏾 正则匹配配置不当


Github Status ☕

github contribution grid snake animation github contribution grid snake animation

Automatically generated by SummerSec/github-profile-terminal-action at Mon, 13 Apr 2026 12:56:10 UTC

Pinned Loading

  1. ShiroAttack2 ShiroAttack2 Public

    shiro反序列化漏洞综合利用,包含(回显执行命令/注入内存马)修复原版中NoCC的问题 https://github.com/j1anFen/shiro_attack

    Java 2.5k 284

  2. AgentInjectTool AgentInjectTool Public

    改造BeichenDream/InjectJDBC加入shiro获取key和修改key功能

    Java 280 35

  3. SpringExploit SpringExploit Public

    🚀 一款为了学习go而诞生的漏洞利用工具

    Go 451 53

  4. semantic-linter semantic-linter Public

    JavaScript 1

  5. AI-Inner-Os AI-Inner-Os Public

    AI Inner OS 是一个面向 AI CLI 工具的插件,支持 Claude Code、Codex CLI、Cursor、OpenCode CLI。 它通过协议注入,让 AI 在正常完成任务的同时,额外输出一层可见的自由独白: ▎InnerOS:这仓库现在还像毛坯房,先把承重墙立起来再说。 不预设人格,不限制语气。AI 可以吐槽、得意、焦虑、冷笑、跳跃联想——或者什么都不说。独白是否出现…

    JavaScript

  6. SpringBootExploit SpringBootExploit Public archive

    项目是根据LandGrey/SpringBootVulExploit清单编写,目的hvv期间快速利用漏洞、降低漏洞利用门槛。

    Java 1.9k 314