elweth-sec's Stars
shellphish/how2heap
A repository for learning various heap exploitation techniques.
Notselwyn/CVE-2024-1086
Universal local privilege escalation Proof-of-Concept exploit for CVE-2024-1086, working on most Linux kernels between v5.14 and v6.6, including Debian, Ubuntu, and KernelCTF. The success rate is 99.4% in KernelCTF images.
swisskyrepo/InternalAllTheThings
Active Directory and Internal Pentest Cheatsheets
glitchedgitz/cook
A wordlist framework to fullfill your kinks with your wordlists. For security researchers, bug bounty and hackers.
c0dejump/HExHTTP
Header Exploitation HTTP
bata24/gef
GEF - GDB Enhanced Features for exploit devs & reversers
pr0cf5/kernel-exploit-practice
repository for kernel exploit practice
cosad3s/postleaks
Search for sensitive data in Postman public library.
thalium/symless
BlWasp/rs-shell
A dirty PoC for a reverse shell with cool features in Rust
doyensec/CSPTBurpExtension
CSPT is an open-source Burp Suite extension to find and exploit Client-Side Path Traversal.
mxrch/ProtoDeep
🏄♂️ Decode and analyze protobuf efficiently.
nobodyisnobody/docs
various docs (that are interesting, or not, depending on the point of view...)
nuts7/CVE-2023-27372
SPIP before 4.2.1 allows Remote Code Execution via form values in the public area because serialization is mishandled. The fixed versions are 3.2.18, 4.0.10, 4.1.8, and 4.2.1.
LMS57/TempleOfPwn
All Files, Scripts, and exploits can be found here
cosad3s/hfinder
Help recon of hostnames from specific ASN or CIDR, thanks to Robtex and BGP.HE
cosad3s/CVE-2022-35914-poc
Nishacid/WSAAR
Auto-Recon script that will help you in the Burp Suite Certified Practitioner Examor with any web-security lab.
Icare1337/LibreOffice_Tips_Bug_Bounty
Some tips for Bug Bounty using LibreOffice
voydstack/shellcoding
ChrisTheCoolHut/Linux_kernel_exploitation
https://breaking-bits.gitbook.io/breaking-bits/exploit-development/linux-kernel-exploit-development
xanhacks/OffensiveWeb
Offensive Web is a documentation website about security research, difficult concepts, bypass and new exploitation techniques.
cosad3s/salsa
SALSA 💃⚡ - SALesforce Scanner for Aura (and beyond). Enumeration of vulnerabilities and misconfigurations against Salesforce endpoint.
cosad3s/subscout
All-in-one subdomains scout tool Docker image
AethliosIK/ywh-collab
YWH Collab is a comparator of private program for hunters collaboration
Ruulian/initramfs-toolkit
Toolkit that allows to extract and compress initramfs cpio, useful for Linux kernel exploitation.
9hozt/wegglist
Weggli wrapper written in go to handle your patterns lists
jdouliez/webpack_extractor
A tool that retrieves source files in plain text from a project's sourcemap
n4sm/vm-make
Build small QEMU images using Busybox
Jrmbt/kernel_exploit_world
Tutorial for writing kernel exploits