gabrieliuga's Stars
spipm/Depix
Recovers passwords from pixelized screenshots
conwnet/github1s
One second to read GitHub code with VS Code.
projectdiscovery/nuclei
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.
BishopFox/sliver
Adversary Emulation Framework
RedSiege/EyeWitness
EyeWitness is designed to take screenshots of websites, provide some server header info, and identify default credentials if possible.
clong/DetectionLab
Automate the creation of a lab environment complete with security tooling and logging best practices
hakluke/hakrawler
Simple, fast web crawler designed for easy, quick discovery of endpoints and assets within a web application
bluscreenofjeff/Red-Team-Infrastructure-Wiki
Wiki to collect Red Team infrastructure hardening resources
pry0cc/axiom
The dynamic infrastructure framework for everybody! Distribute the workload of many different scanning tools with ease, including nmap, ffuf, masscan, nuclei, meg and many more!
tomnomnom/waybackurls
Fetch all the URLs that the Wayback Machine knows about for a domain
andrew-d/static-binaries
Various *nix tools built as statically-linked binaries
evyatarmeged/Raccoon
A high performance offensive security tool for reconnaissance and vulnerability scanning
tarunkant/Gopherus
This tool generates gopher link for exploiting SSRF and gaining RCE in various servers
tomnomnom/httprobe
Take a list of domains and probe for working HTTP and HTTPS servers
tomnomnom/hacks
A collection of hacks and one-off scripts
lukechilds/reverse-shell
Reverse Shell as a Service
p3nt4/PowerShdll
Run PowerShell with rundll32. Bypass software restrictions.
jdonsec/AllThingsSSRF
This is a collection of writeups, cheatsheets, videos, books related to SSRF in one single location
rasta-mouse/ThreatCheck
Identifies the bytes that Microsoft Defender / AMSI Consumer flags on.
asciimoo/exrex
Irregular methods on regular expressions
hatRiot/token-priv
Token Privilege Research
pwn0sec/PwnXSS
PwnXSS: Vulnerability (XSS) scanner exploit
brompwnie/botb
A container analysis and exploitation tool for pentesters and engineers.
dirkjanm/adconnectdump
Dump Azure AD Connect credentials for Azure AD and Active Directory
mdsecactivebreach/Chameleon
Chameleon: A tool for evading Proxy categorisation
OWASP/www-project-web-security-testing-guide
The Web Security Testing Guide (WSTG) Project produces the premier cybersecurity testing resource for web application developers and security professionals.
HarmJ0y/DAMP
The Discretionary ACL Modification Project: Persistence Through Host-based Security Descriptor Modification
AdmiralGaust/bountyRecon
Bash script to automate Bug Bounty Reconnaissance
limitedeternity/squidclient
SquidClient. HTB Unbalanced edition.
Ang31D/recon-tools
Tools for Recon