Pinned Repositories
a2sv
Auto Scanning to SSL Vulnerability
AD-Attack-Defense
Attack and defend active directory using modern post exploitation adversary tradecraft activity
ADRecon
ADRecon is a tool which gathers information about the Active Directory and generates a report which can provide a holistic picture of the current state of the target AD environment.
android-security-awesome
A collection of android security related resources
apache-struts2-CVE-2017-5638
Demo Application and Exploit
k9checklist
Kubernetes Security Audit Checklist
koala
An amazing bug bounty toolkit for Docker.
OSCP-2
This repo consists of important links (or URLs) which were bookmarked during my journey of OSCP Certification.
SCS-C01
Study Note for AWS SCS-C01
SharePointURLBrute-v1.1
bhasbor's Repositories
bhasbor/k9checklist
Kubernetes Security Audit Checklist
bhasbor/SCS-C01
Study Note for AWS SCS-C01
bhasbor/koala
An amazing bug bounty toolkit for Docker.
bhasbor/AD-Attack-Defense
Attack and defend active directory using modern post exploitation adversary tradecraft activity
bhasbor/APT34
APT34/OILRIG leak
bhasbor/awesome-threat-intelligence
A curated list of Awesome Threat Intelligence resources
bhasbor/aws-extender
AWS Extender (Cloud Storage Tester) is a Burp plugin to assess permissions of cloud storage containers on AWS, Google Cloud and Azure.
bhasbor/BBProfiles
Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that improve an active and passive scanner by yourself. This extension requires Burp Suite Pro.
bhasbor/bettercap
The Swiss Army knife for 802.11, BLE and Ethernet networks reconnaissance and MITM attacks.
bhasbor/bhaskube
My K8 notes repo
bhasbor/CORStest
A simple CORS misconfiguration scanner
bhasbor/Corsy
CORS Misconfiguration Scanner
bhasbor/eaphammer
Targeted evil twin attacks against WPA2-Enterprise networks. Indirect wireless pivots using hostile portal attacks.
bhasbor/inception
A highly configurable tool to check for whatever you like against any number of hosts.
bhasbor/intrigue-core
Discover Your Attack Surface
bhasbor/koadic
Koadic C3 COM Command & Control - JScript RAT
bhasbor/kubernetes-goat
Kubernetes Goat is "Vulnerable by Design" Kubernetes Cluster.
bhasbor/LKWA
Lesser Known Web Attack Lab
bhasbor/lpeworkshop
Windows / Linux Local Privilege Escalation Workshop
bhasbor/mallet
bhasbor/monkey
Infection Monkey - An automated pentest tool
bhasbor/my-arsenal-of-aws-security-tools
List of open source tools for AWS security: defensive, offensive, auditing, DFIR, etc.
bhasbor/olaf
Office365 Log Analysis Framework
bhasbor/pacu
The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.
bhasbor/Rubeus
Trying to tame the three-headed dog.
bhasbor/Sudomy
Sudomy is a subdomain enumeration tool, created using a bash script, to analyze domains and collect subdomains in fast and comprehensive way . Report output in HTML or CSV format
bhasbor/the-book-of-secret-knowledge
:zap: A collection of awesome lists, manuals, blogs, hacks, one-liners, cli/web tools and more. Especially for System and Network Administrators, DevOps, Pentesters or Security Researchers.
bhasbor/transportc2
New PoC Command and Control Server. Interact with clients through a private web interface, add new users for team sharing and more.
bhasbor/webshell
This is a webshell open source project
bhasbor/weirdAAL
WeirdAAL (AWS Attack Library)