BuffaloWill's Stars
alex/what-happens-when
An attempt to answer the age old interview question "What happens when you type google.com into your browser and press enter?"
trailofbits/algo
Set up a personal VPN in the cloud
jordansissel/fpm
Effing package management! Build packages for multiple platforms (deb, rpm, etc) with great ease and sanity.
k4m4/movies-for-hackers
🎬 A curated list of movies every hacker & cyberpunk must watch.
paralax/awesome-honeypots
an awesome list of honeypot resources
zardus/ctf-tools
Some setup scripts for security research tools.
tylerha97/awesome-reversing
A curated list of awesome reversing resources
ngalongc/bug-bounty-reference
Inspired by https://github.com/djadmin/awesome-bug-bounty, a list of bug bounty write-up that is categorized by the bug nature
dirtycow/dirtycow.github.io
Dirty COW
GrrrDog/Java-Deserialization-Cheat-Sheet
The cheat sheet about Java Deserialization vulnerabilities
elastic/examples
Home for Elasticsearch examples available to everyone. It's a great way to get started.
marin-m/pbtk
A toolset for reverse engineering and fuzzing Protobuf-based apps
SECFORCE/Tunna
Tunna is a set of tools which will wrap and tunnel any TCP communication over HTTP. It can be used to bypass network restrictions in fully firewalled environments.
Quitten/Autorize
Automatic authorization enforcement detection extension for burp suite written in Jython developed by Barak Tawily in order to ease application security people work and allow them perform an automatic authorization tests
n1nj4sec/memorpy
Python library using ctypes to search/edit windows / linux / macOS / SunOS programs memory
PortSwigger/backslash-powered-scanner
Finds unknown classes of injection vulnerabilities
taviso/rbndr
Simple DNS Rebinding Service
mandatoryprogrammer/cloudflare_enum
Cloudflare DNS Enumeration Tool for Pentesters
cryptax/confsec
Security, hacking conferences (list)
secureworks/dcept
A tool for deploying and detecting use of Active Directory honeytokens
ngalongc/AutoLocalPrivilegeEscalation
An automated script that download potential exploit for linux kernel from exploitdb, and compile them automatically
mechaphish/mecha-docs
Documentation for the Mechanical Phish.
appsecco/defcon24-infra-monitoring-workshop
Defcon24 Workshop Contents : Ninja Level Infrastructure Monitoring
raffaele-forte/climber
Check UNIX/Linux systems for privilege escalation
jduck/challack
Proof-of-concept exploit code for CVE-2016-5696
april/cryptonom-icon
Freely available cryptographic iconography
da667/ip2dns
BuffaloWill/whoiswatcher
Do bulk whois lookups and get alerted on domains of interest.
BuffaloWill/BChecksPublic
A collection of BurpSuite BChecks
BuffaloWill/lucee-webshells
A tool for building Lucee extensions including remote code execution