Pinned Repositories
Awesome-Vulnerability-Research
🦄 A curated list of the awesome resources about the Vulnerability Research
bugbounty_tool_env
some usefull tools
find-sec-bugs
The FindBugs plugin for security audits of Java web applications and Android applications. (Also work with Groovy and Scala projects)
h1_2_nuclei
Scan any HackerOne program with Nuclei
hacktrickconf-17
this is just a exercises
infosec-notes
All my InfoSec realted notes
log4jscanner
A log4j vulnerability filesystem scanner and Go package for analyzing JAR files.
OneForAll
OneForAll是一款功能强大的子域收集工具
rengine
reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines, recon data correlation and organization, continuous monitoring, backed by a database, and simple yet intuitive User Interface. reNgine makes it easy for penetration testers to gather reconnaissance with minimal configuration and with the help of reNgine's correlation, it just makes recon effortless.
waf_bypass_payloads
ismailbozkurt's Repositories
ismailbozkurt/endpoint_security_integration
ismailbozkurt/Application-Security
Resources for Application Security including Web, API, Android, iOS and Thick Client
ismailbozkurt/Artillery
CIA UAC bypass implementation that utilizes elevated COM object to write to System32 and an auto-elevated process to execute as administrator.
ismailbozkurt/awesome-chatgpt-prompts
This repo includes ChatGPT prompt curation to use ChatGPT better.
ismailbozkurt/Awesome-Red-Team-Operations
ismailbozkurt/azure-search-openai-demo
A sample app for the Retrieval-Augmented Generation pattern running in Azure, using Azure AI Search for retrieval and Azure OpenAI large language models to power ChatGPT-style and Q&A experiences.
ismailbozkurt/burpgpt
A Burp Suite extension that integrates OpenAI's GPT to perform an additional passive scan for discovering highly bespoke vulnerabilities, and enables running traffic-based analysis of any type.
ismailbozkurt/BypassAV
This map lists the essential techniques to bypass anti-virus and EDR
ismailbozkurt/ByteViper
Proof of concept of how AI could be used by malwares
ismailbozkurt/Conferences
Conference slides
ismailbozkurt/FBI-tools
🕵️ OSINT Tools for gathering information and actions forensics 🕵️
ismailbozkurt/HACKTHEBOX-WRITEUPS
notes for myself
ismailbozkurt/Homework-of-Python
Python codes of my blog.
ismailbozkurt/jquery-ui
CVE Collection of jQuery UI XSS Payloads
ismailbozkurt/KecoonBot-opencv-bot-main---with-Python
Knight Online OpenCv2 Anti-AFK Object Detection
ismailbozkurt/knight-online-address-finder
Auto find mem address for Knight Online
ismailbozkurt/LEAKEY
LEAKEY is a bash script which checks and validates for leaked credentials. The idea behind LEAKEY is to make it highly customizable and easy to add checks for new services.
ismailbozkurt/Locksmith
A small tool built to detect and fix common misconfigurations in Active Directory Certificate Services.
ismailbozkurt/Malware-Resurrection
This project enables malware to resurrect and remain hidden even after termination, using a User-Mode Program and Kernel-Mode Driver as part of the Malware Resurrection technique.
ismailbozkurt/obsidian-dataview
A data index and query language over Markdown files, for https://obsidian.md/.
ismailbozkurt/osintgpt
An open-source intelligence (OSINT) analysis tool leveraging GPT-powered embeddings and vector search engines for efficient data processing
ismailbozkurt/playbooks
External Playbooks for Public Access
ismailbozkurt/Proxy-List-World
ICE Proxy list produces new proxies by collectively scanning the entire open source list in the world. Proxies are updated every 2 - 3 minutes. New Proxy sources will be added day by day. The list is always open source.
ismailbozkurt/RedTeam-OffensiveSecurity
Tools & Interesting Things for RedTeam Ops
ismailbozkurt/RustRedOps
🦀 | RustRedOps is a repository dedicated to gathering and sharing advanced techniques and offensive malware for Red Team, with a specific focus on the Rust programming language. (In Construction)
ismailbozkurt/scan_results
ismailbozkurt/ScareCrow
ScareCrow - Payload creation framework designed around EDR bypass.
ismailbozkurt/sliver
Adversary Emulation Framework
ismailbozkurt/The-Hacker-Recipes
This project is aimed at freely providing technical guides on various hacking topics: Active Directory services, web services, servers, intelligence gathering, physical intrusion, phishing, mobile apps, iot, social engineering, etc.
ismailbozkurt/VMwareCloak
A PowerShell script that attempts to help malware analysts hide their VMware Windows VM's from malware that may be trying to evade analysis.