gymR4T's Stars
evilsocket/legba
A multiprotocol credentials bruteforcer / password sprayer and enumerator. š„·
vulncheck-oss/cisco-ios-xe-implant-scanner
A go-exploit to scan for implanted Cisco IOS XE Systems
hoodoer/JS-Tap
JavaScript payload and supporting software to be used as XSS payload or post exploitation implant to monitor users as they use the targeted application. Also includes a C2 for executing custom JavaScript payloads in clients, and a "mimic" feature that automatically generates custom payloads.
dafthack/GraphRunner
A Post-exploitation Toolset for Interacting with the Microsoft Graph API
Raz0r/aemscan
Adobe Experience Manager Vulnerability Scanner
0ang3el/aem-hacker
apache/superset
Apache Superset is a Data Visualization and Data Exploration Platform
synacktiv/nord-stream
Nord Stream is a tool that allows you to extract secrets stored inside CI/CD environments by deploying malicious pipelines. It currently supports Azure DevOps, GitHub and GitLab.
aaron-costello/ServiceNow-Schema
A shortlist of core ServiceNow tables.
OffcierCia/non-typical-OSINT-guide
The most unusual OSINT guide you've ever seen. The repository is intended for bored professionals only. PRs are welcome!
freelawproject/courts-db
A database of courts, tests and other experiments
usdAG/FlowMate
FlowMate, a BurpSuite extension that brings taint analysis to web applications, by tracking all parameters send to a target application and matches their occurrences in the responses.
bsysop/servicenow
ServiceNow widge-simple-list misconfiguration scanner
olafhartong/DefenderHarvester
Expose a lot of MDE telemetry that is not easily accessible in any searchable form
kiwids0220/deviceCode2WinHello
A small script that automates Entra ID persistence with Windows Hello For Business key
Onapsis/onapsis_icmad_scanner
qtc-de/rpv-web
rpv-web is a browser based frontend for the rpv library
qtc-de/rpv
rpv is a v library for analyzing RPC servers and interfaces on the Windows operating system
icyguider/LatLoader
PoC module to demonstrate automated lateral movement with the Havoc C2 framework.
wbenny/KSOCKET
KSOCKET provides a very basic example how to make a network connections in the Windows Driver by using WSK
omnivore-app/omnivore
Omnivore is a complete, open source read-it-later solution for people who like reading.
connormcgarr/EATGuard
Implementation of an export address table protection mitigation, like Export Address Filtering (EAF)
sidaf/moonshine
Mazars-Tech/AD_Miner
AD Miner is an Active Directory audit tool that leverages cypher queries to crunch data from the #Bloodhound graph database to uncover security weaknesses
Chocapikk/CVE-2023-29357
Microsoft SharePoint Server Elevation of Privilege Vulnerability
M01N-Team/HeaderLessPE
blacklanternsecurity/public-dns-servers
A CI/CD-verified list of the internet's known-good public DNS servers (from public-dns.info) Updated weekly!
codewhitesec/daphne
Proof-of-Concept to evade auditd by tampering via ptrace
codewhitesec/apollon
Proof-of-Concept to evade auditd by writing /proc/PID/mem
redskal/SharpAzbelt
.NET port of Leron Gray's azbelt tool.