Oracle-Security
I am a security researcher specializing in web application penetration testing and active directory exploitation.
Pinned Repositories
CSSockets
C# Simple Sockets, an implementation of event-based sockets for .NET Core 2.0
Custom-Tools-Loadout
Script for installing and updating scripts that I like for web app pen testing.
CVEs
A repository of exploits that I have discovered. These are disclosed responsibly and vendors have been contacted. In any instance where it works against the live version, the vendor has not responded to my emails.
Notes
Compilation of Notes from various sources.
OracleMassAttackFramework
This is a multi-threaded script to run a python script against a list of IPs. This comes with synchronization and locking to avoid issues.
Oracles-Credential-Stuffer
A multi-threaded python script for credential stuffing that makes use of loadable profiles, it also has capabilities to extract a group from grep upon successful login.
Pluralsight-Audition
PublicBucketExtractor
Extracts file paths based on your given parameters from public buckets. This uses Grayhat Warfares API so you will need to purchase VIP to use this script.
pwnbox
Instructions on how to create your very own Pwnbox, originally created by HTB
Random-Scripts
Random Scripts I have made that do not deserve it's own repo.
Oracle-Security's Repositories
Oracle-Security/CVEs
A repository of exploits that I have discovered. These are disclosed responsibly and vendors have been contacted. In any instance where it works against the live version, the vendor has not responded to my emails.
Oracle-Security/OracleMassAttackFramework
This is a multi-threaded script to run a python script against a list of IPs. This comes with synchronization and locking to avoid issues.
Oracle-Security/PublicBucketExtractor
Extracts file paths based on your given parameters from public buckets. This uses Grayhat Warfares API so you will need to purchase VIP to use this script.
Oracle-Security/Notes
Compilation of Notes from various sources.
Oracle-Security/Oracles-Credential-Stuffer
A multi-threaded python script for credential stuffing that makes use of loadable profiles, it also has capabilities to extract a group from grep upon successful login.
Oracle-Security/CSSockets
C# Simple Sockets, an implementation of event-based sockets for .NET Core 2.0
Oracle-Security/Custom-Tools-Loadout
Script for installing and updating scripts that I like for web app pen testing.
Oracle-Security/Pluralsight-Audition
Oracle-Security/pwnbox
Instructions on how to create your very own Pwnbox, originally created by HTB
Oracle-Security/Random-Scripts
Random Scripts I have made that do not deserve it's own repo.
Oracle-Security/WcfScanner
Oracle-Security/Weaponized-CVEs
A collection of CVE's that are weaponized to exploit whatever PoC it is exploiting. Such as automatically dropping beacons and shells.