Pinned Repositories
3DES-Gen
3DES Gen with KCV and Combined Key
API-fuzzer
API Fuzzer which allows to fuzz request attributes using common pentesting techniques and lists vulnerabilities
awesome-jenkins-rce-2019
There is no pre-auth RCE in Jenkins since May 2017, but this is the one!
dns_buffer
DNS Buffer Information
enum4linux
A Linux alternative to enum.exe for enumerating data from Windows and Samba hosts.
FixGitAtomMacOS
fuzzapi
Fuzzapi is a tool used for REST API pentesting and uses API_Fuzzer gem
Internal-Monologue
Internal Monologue Attack: Retrieving NTLM Hashes without Mimikatz
Kadimus
Kadimus is a tool to check sites to lfi vulnerability , and also exploit it...
LFISuite
Totally Automatic LFI Exploiter (+ Reverse Shell) and Scanner
hex0x42424242's Repositories
hex0x42424242/awesome-jenkins-rce-2019
There is no pre-auth RCE in Jenkins since May 2017, but this is the one!
hex0x42424242/3DES-Gen
3DES Gen with KCV and Combined Key
hex0x42424242/API-fuzzer
API Fuzzer which allows to fuzz request attributes using common pentesting techniques and lists vulnerabilities
hex0x42424242/dns_buffer
DNS Buffer Information
hex0x42424242/enum4linux
A Linux alternative to enum.exe for enumerating data from Windows and Samba hosts.
hex0x42424242/FixGitAtomMacOS
hex0x42424242/fuzzapi
Fuzzapi is a tool used for REST API pentesting and uses API_Fuzzer gem
hex0x42424242/Internal-Monologue
Internal Monologue Attack: Retrieving NTLM Hashes without Mimikatz
hex0x42424242/Kadimus
Kadimus is a tool to check sites to lfi vulnerability , and also exploit it...
hex0x42424242/LFISuite
Totally Automatic LFI Exploiter (+ Reverse Shell) and Scanner
hex0x42424242/libesedb
Library and tools to access the Extensible Storage Engine (ESE) Database File (EDB) format.
hex0x42424242/liffy
Local File Inclusion Exploitation Tool (mirror)
hex0x42424242/linkedin2username
OSINT Tool: Generate username lists for companies on LinkedIn
hex0x42424242/linuxprivchecker
linuxprivchecker.py -- a Linux Privilege Escalation Check Script
hex0x42424242/Mass-Unfollow-Linkedin
Mass Unfollow Linkedin - Sep/2023
hex0x42424242/ntdsxtract
Active Directory forensic framework
hex0x42424242/owasp-mstg
The Mobile Security Testing Guide (MSTG) is a comprehensive manual for mobile app security testing and reverse engineering.
hex0x42424242/Probable-Wordlists
Version 2 is live! Wordlists sorted by probability originally created for password generation and testing - make sure your passwords aren't popular!
hex0x42424242/search.0t.rocks
hex0x42424242/shadow
Plaform independent reverse shell over https
hex0x42424242/Veil
Veil 3.0
hex0x42424242/wfuzz
Web application fuzzer