Tom-H-'s Stars
hackerscrolls/SecurityTips
wireghoul/graudit
grep rough audit - source code auditing tool
andrewjkerr/security-cheatsheets
🔒 A collection of cheatsheets for various infosec tools and topics.
enjoiz/XXEinjector
Tool for automatic exploitation of XXE vulnerability using direct and different out of band methods.
snoopysecurity/awesome-burp-extensions
A curated list of amazingly awesome Burp Extensions
P4T12ICK/Sigma-Hunting-App
A Splunk App containing Sigma detection rules, which can be updated from a Git repository.
olafhartong/ThreatHunting
A Splunk app mapped to MITRE ATT&CK to guide your threat hunts
arkime/arkime
Arkime is an open source, large scale, full packet capturing, indexing, and database system.
NationalSecurityAgency/ghidra
Ghidra is a software reverse engineering (SRE) framework
cs01/pyxtermjs
A fully functional terminal in your browser.
FreeRADIUS/freeradius-server
FreeRADIUS - A multi-protocol policy server.
netwrix/pingcastle
PingCastle - Get Active Directory Security at 80% in 20% of the time
GostCryptTeam/gostcrypt
Open-source Virtual Disk Encryption Software
jivoi/awesome-osint
:scream: A curated list of amazingly awesome OSINT
sonertari/SSLproxy
Transparent SSL/TLS proxy for decrypting and diverting network traffic to other programs, such as UTM services, for deep SSL inspection
yeyintminthuhtut/Awesome-Red-Teaming
List of Awesome Red Teaming Resources
phaag/nfdump
Netflow processing tools
MISP/misp-training
MISP trainings, threat intel and information sharing training materials with source code
infosecn1nja/AD-Attack-Defense
Attack and defend active directory using modern post exploitation adversary tradecraft activity
PaulSec/awesome-windows-domain-hardening
A curated list of awesome Security Hardening techniques for Windows.
danielmiessler/SecLists
SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.
swisskyrepo/PayloadsAllTheThings
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
w181496/Web-CTF-Cheatsheet
Web CTF CheatSheet 🐈
bluscreenofjeff/Red-Team-Infrastructure-Wiki
Wiki to collect Red Team infrastructure hardening resources
infosecn1nja/Red-Teaming-Toolkit
This repository contains cutting-edge open-source security tools (OST) for a red teamer and threat hunter.
SySS-Research/Seth
Perform a MitM attack and extract clear text credentials from RDP connections
vulnersCom/nmap-vulners
NSE script based on Vulners.com API
kahun/awesome-sysadmin
A curated list of amazingly awesome open source sysadmin resources inspired by Awesome PHP.
trimstray/the-book-of-secret-knowledge
A collection of inspiring lists, manuals, cheatsheets, blogs, hacks, one-liners, cli/web tools and more.
gentilkiwi/mimikatz
A little tool to play with Windows security