Pinned Repositories
Automation-Ideas
CVE-2020-24572-POC
An issue was discovered in includes/webconsole.php in RaspAP 2.5. With authenticated access, an attacker can use a misconfigured (and virtually unrestricted) web console to attack the underlying OS running this software, and execute commands on the system including ones for uploading of files and execution of code.
DigiSpark-ReverseShell
This Shell, is not the most optimized one possible. However, as I learn more I will definitely write a more powerful injection. Essentially when plugged in the DigiSpark should begin after it's natural 5 second delay(unless you have that disabled, which I recommend in wild injections). The DigiSpark then proceeds to open windows defender, as a user and disable it manually, as the new windows defender updates prohibit disabling real-time protection from the command line. Next it downloads psexec from your web server through an Administrator Command prompt and finally it elevates it's own privileges to NT/AUTHORITY SYSTEM and downloads your reverse shell and runs it.
G2
Gommand and Gontrol
Interactive-ish
kali-setup
Personal-Website
my portfolio website
prochide
hide linux processes, based off of a different project that i decided sucked
RedTeam-TradeCraft
Random tools that i wrote/found.
SmokeyObfuscator
Rewrite to fit my needs
gerbsec's Repositories
gerbsec/SmokeyObfuscator
Rewrite to fit my needs
gerbsec/CVE-2020-24572-POC
An issue was discovered in includes/webconsole.php in RaspAP 2.5. With authenticated access, an attacker can use a misconfigured (and virtually unrestricted) web console to attack the underlying OS running this software, and execute commands on the system including ones for uploading of files and execution of code.
gerbsec/G2
Gommand and Gontrol
gerbsec/Automation-Ideas
gerbsec/Interactive-ish
gerbsec/kali-setup
gerbsec/WIFI-Pentesting
gerbsec/ApiSite
Just messing around buildling an API CRUD site.
gerbsec/Nixarmor-But-Better
gerbsec/Personal-Website
my portfolio website
gerbsec/Pico-Automation
gerbsec/prochide
hide linux processes, based off of a different project that i decided sucked
gerbsec/RedTeam-TradeCraft
Random tools that i wrote/found.
gerbsec/Salah-Reminder-Bot
gerbsec/cnw-counter
Discord bot project
gerbsec/EmailBot
Discord bot for verifying the email domain of server members
gerbsec/Exploit-Dev
gerbsec/ForgeArmory
ForgeArmory provides TTPs that can be used with the TTPForge (https://github.com/facebookincubator/ttpforge).
gerbsec/gerbsec
gerbsec/gerbsec.github.io
website
gerbsec/GTFOBins.github.io
GTFOBins is a curated list of Unix binaries that can be used to bypass local security restrictions in misconfigured systems
gerbsec/Helheim
Second attempt at a C2 written in GO, MINIMAL CHATGPT HELP (ALMOST NONE)
gerbsec/HollowGhost
Process hollowing C# shellcode runner that is FUD against Microsoft Defender as of October 7, 2023.
gerbsec/MalDev
Collection of malware I write
gerbsec/Malleable-CS-Profiles
A list of python tools to help create an OPSEC-safe Cobalt Strike profile.
gerbsec/Newegg-GPU-Scraper
scrapping bot, dont abuse, get one card and go.
gerbsec/prelude-chains
gerbsec/Scripts
Repo of RIT CCDC Team Scripts
gerbsec/web-exploitation
just a bunch of stuff related to web exp
gerbsec/writeups