CloudyKhan's Stars
micahvandeusen/gMSADumper
Lists who can read any gMSA password blobs and parses them if the current user has access.
Rai2en/OSCP-Notes
A collection of study notes and resources for the Offensive Security Certified Professional (OSCP) certification exam. Includes summaries, key concepts, and practical tips.
Ignitetechnologies/BurpSuite-For-Pentester
This cheatsheet is built for the Bug Bounty Hunters and penetration testers in order to help them hunt the vulnerabilities from P4 to P1 solely and completely with "BurpSuite".
VoidSec/CVE-2020-1472
Exploit Code for CVE-2020-1472 aka Zerologon
mandiant/commando-vm
Complete Mandiant Offensive VM (Commando VM), a fully customizable Windows-based pentesting virtual machine distribution. commandovm@mandiant.com
D35m0nd142/LFISuite
Totally Automatic LFI Exploiter (+ Reverse Shell) and Scanner
brianlam38/OSCP-2022
Notes compiled for the OSCP exam.
frizb/PasswordDecrypts
Handy Stored Password Decryption Techniques
ly4k/Certipy
Tool for Active Directory Certificate Services enumeration and abuse
dirkjanm/adconnectdump
Dump Azure AD Connect credentials for Azure AD and Active Directory
ropnop/windapsearch
Python script to enumerate users, groups and computers from a Windows domain through LDAP queries
seriotonctf/cme-nxc-cheat-sheet
A cheat sheet for CrackMapExec and NetExec
Pennyw0rth/NetExec
The Network Execution Tool
TCM-Course-Resources/Windows-Privilege-Escalation-Resources
Compilation of Resources from TCM's Windows Priv Esc Udemy Course
swisskyrepo/PayloadsAllTheThings
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
V1n1v131r4/OSCP-Buffer-Overflow
OSCP Buffer Overflow cheat sheet
peass-ng/PEASS-ng
PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)
BloodHoundAD/SharpHound
C# Data Collector for BloodHound
GreyDGL/PentestGPT
A GPT-empowered penetration testing tool
CloudyKhan/fipp
fipp.py is a flexible, interactive password processor that filters and customizes password lists based on length, special characters, numbers, uppercase requirements, and encoding, with both command-line and interactive modes.
tomnomnom/httprobe
Take a list of domains and probe for working HTTP and HTTPS servers
m3m0o/chamilo-lms-unauthenticated-big-upload-rce-poc
This is a script written in Python that allows the exploitation of the Chamilo's LMS software security flaw described in CVE-2023-4220
payloadbox/sql-injection-payload-list
🎯 SQL Injection Payload List
CloudyKhan/OSCP-Pentesting-Cheatsheet
A general purpose cheat sheet for pentesting and OSCP certification
Dewalt-arch/pimpmykali
Kali Linux Fixes for Newly Imported VM's
mysqludf/lib_mysqludf_sys
A UDF library with functions to interact with the operating system. These functions allow you to interact with the execution environment in which MySQL runs.
0x4D31/awesome-oscp
A curated list of awesome OSCP resources
unmeg/hax
Stuff I use for OSCP/HTB/VHL and so on.