├── .gitignore ├── README.md ├── cmd └── taint │ └── main.go ├── conf └── app.conf ├── controllers ├── cmdi.go ├── cors.go ├── crlfi.go ├── default.go ├── favicon.go ├── jsonp.go ├── sqli.go ├── ssrf.go ├── ssti.go ├── traversal.go ├── upload.go ├── xss.go ├── xxe.go └── zipslip.go ├── favicon.ico ├── go-sec-code.png ├── go.mod ├── go.sum ├── main.go ├── models └── user.go ├── routers └── router.go ├── static ├── xml │ └── xxe.xml └── xss │ ├── poc.pdf │ └── poc.svg ├── utils ├── gogs.go └── securityUtils.go └── views ├── fileUpload.tpl ├── index.tpl ├── ssti.tpl ├── xss.tpl └── xxe.tpl /.gitignore: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/.gitignore -------------------------------------------------------------------------------- /README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/README.md -------------------------------------------------------------------------------- /cmd/taint/main.go: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/cmd/taint/main.go -------------------------------------------------------------------------------- /conf/app.conf: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/conf/app.conf -------------------------------------------------------------------------------- /controllers/cmdi.go: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/controllers/cmdi.go -------------------------------------------------------------------------------- /controllers/cors.go: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/controllers/cors.go -------------------------------------------------------------------------------- /controllers/crlfi.go: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/controllers/crlfi.go -------------------------------------------------------------------------------- /controllers/default.go: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/controllers/default.go -------------------------------------------------------------------------------- /controllers/favicon.go: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/controllers/favicon.go -------------------------------------------------------------------------------- /controllers/jsonp.go: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/controllers/jsonp.go -------------------------------------------------------------------------------- /controllers/sqli.go: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/controllers/sqli.go -------------------------------------------------------------------------------- /controllers/ssrf.go: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/controllers/ssrf.go -------------------------------------------------------------------------------- /controllers/ssti.go: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/controllers/ssti.go -------------------------------------------------------------------------------- /controllers/traversal.go: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/controllers/traversal.go -------------------------------------------------------------------------------- /controllers/upload.go: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/controllers/upload.go -------------------------------------------------------------------------------- /controllers/xss.go: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/controllers/xss.go -------------------------------------------------------------------------------- /controllers/xxe.go: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/controllers/xxe.go -------------------------------------------------------------------------------- /controllers/zipslip.go: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/controllers/zipslip.go -------------------------------------------------------------------------------- /favicon.ico: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/favicon.ico -------------------------------------------------------------------------------- /go-sec-code.png: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/go-sec-code.png -------------------------------------------------------------------------------- /go.mod: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/go.mod -------------------------------------------------------------------------------- /go.sum: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/go.sum -------------------------------------------------------------------------------- /main.go: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/main.go -------------------------------------------------------------------------------- /models/user.go: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/models/user.go -------------------------------------------------------------------------------- /routers/router.go: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/routers/router.go -------------------------------------------------------------------------------- /static/xml/xxe.xml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/static/xml/xxe.xml -------------------------------------------------------------------------------- /static/xss/poc.pdf: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/static/xss/poc.pdf -------------------------------------------------------------------------------- /static/xss/poc.svg: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/static/xss/poc.svg -------------------------------------------------------------------------------- /utils/gogs.go: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/utils/gogs.go -------------------------------------------------------------------------------- /utils/securityUtils.go: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/utils/securityUtils.go -------------------------------------------------------------------------------- /views/fileUpload.tpl: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/views/fileUpload.tpl -------------------------------------------------------------------------------- /views/index.tpl: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/views/index.tpl -------------------------------------------------------------------------------- /views/ssti.tpl: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/views/ssti.tpl -------------------------------------------------------------------------------- /views/xss.tpl: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/views/xss.tpl -------------------------------------------------------------------------------- /views/xxe.tpl: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/cokeBeer/go-sec-code/HEAD/views/xxe.tpl --------------------------------------------------------------------------------