Keramas
Penetration Tester and Security Researcher | OSCP, OSCE, OSEE, OSWP, OSCE3 (OSWE, OSEP, OSED), eCTHP, GCPN
Pinned Repositories
Blowhole
Docker auditing and enumeration script.
CabCloningFactory
A Python-based tool for cloning .cab certificates
CTF-Writeups
Compendium of various CTF challenges
DS_Walk
Python tool for enumerating directories and files on web servers that contain a publicly readable .ds_store file.
ElNombre
Generate a list of different username/email formats from a list of scraped full names
mssqli-duet
SQL injection script for MSSQL that extracts domain users from an Active Directory environment based on RID bruteforcing
PwnagotchiPlayground
Some scripts for Pwnagotchi
ShellcodeCarver
Python script to carve shellcode into the EAX register
Slacker
Python script for pulling chat history for Slack channels using a stolen API token.
WindowsKernelExploits
Repository for Windows 10 x64 kernel research, exploitation learning, and reference/supplementary code.
Keramas's Repositories
Keramas/mssqli-duet
SQL injection script for MSSQL that extracts domain users from an Active Directory environment based on RID bruteforcing
Keramas/DS_Walk
Python tool for enumerating directories and files on web servers that contain a publicly readable .ds_store file.
Keramas/Blowhole
Docker auditing and enumeration script.
Keramas/PwnagotchiPlayground
Some scripts for Pwnagotchi
Keramas/WindowsKernelExploits
Repository for Windows 10 x64 kernel research, exploitation learning, and reference/supplementary code.
Keramas/CTF-Writeups
Compendium of various CTF challenges
Keramas/Slacker
Python script for pulling chat history for Slack channels using a stolen API token.
Keramas/ShellcodeCarver
Python script to carve shellcode into the EAX register
Keramas/CabCloningFactory
A Python-based tool for cloning .cab certificates
Keramas/ElNombre
Generate a list of different username/email formats from a list of scraped full names
Keramas/ReverseShellCheatSheet
Python script to generate reverse shells based on Pentestmonkey's reverse shell cheat sheet.
Keramas/Lord_of_Cereal
Java deserialization tool for creating encrypted and HMAC protected payloads.
Keramas/Hexxorscii
Quick tool to XOR hex values and then convert them to an ascii string.
Keramas/pwndrop
Self-deployable file hosting service for red teamers, allowing to easily upload and share payloads over HTTP and WebDAV.
Keramas/ADFSpoof
Keramas/chisel
A fast TCP/UDP tunnel over HTTP
Keramas/duckyPad
Do-It-All Mechanical Macropad
Keramas/evilginx2
Standalone man-in-the-middle attack framework used for phishing login credentials along with session cookies, allowing for the bypass of 2-factor authentication
Keramas/Image_Optimizer
Shell script to optimize and rename images
Keramas/impacket
Impacket is a collection of Python classes for working with network protocols.
Keramas/Inveigh
Windows PowerShell ADIDNS/LLMNR/mDNS/NBNS spoofer/man-in-the-middle tool
Keramas/keramas.github.io
Keramas/mona
Corelan Repository for mona.py
Keramas/PowerSCCM
PowerSCCM - PowerShell module to interact with SCCM deployments
Keramas/RedWarden
Cobalt Strike C2 Reverse proxy that fends off Blue Teams, AVs, EDRs, scanners through packet inspection and malleable profile correlation
Keramas/RPG_Battle
Text-based RPG-style battle system
Keramas/security
Stuff about it-security that might be good to know
Keramas/Serverless-Top-10-Project
OWASP Serverless Top 10
Keramas/Translation_Payment_Tracker
Keramas/Vulnhub_VM_Walkthroughs
Compendium of walkthroughs for VMs found on Vulnhub