joeyhenkel's Stars
Developer-Y/cs-video-courses
List of Computer Science courses with video lectures.
swisskyrepo/PayloadsAllTheThings
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
OWASP/CheatSheetSeries
The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.
nccgroup/ScoutSuite
Multi-Cloud Security Auditing Tool
OlivierLaflamme/Cheatsheet-God
Penetration Testing Reference Bank - OSCP / PTP & PTX Cheatsheet
RhinoSecurityLabs/pacu
The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.
dafthack/CloudPentestCheatsheets
This repository contains a collection of cheatsheets I have put together for tools related to pentesting organizations that leverage cloud providers.
Paitesanshi/LLM-Agent-Survey
NetSPI/MicroBurst
A collection of scripts for assessing Microsoft Azure security
ustayready/fireprox
AWS API Gateway management tool for creating on the fly HTTP pass-through proxies for unique IP rotation
dirkjanm/ROADtools
A collection of Azure AD/Entra tools for offensive and defensive security purposes
initstring/cloud_enum
Multi-cloud OSINT tool. Enumerate public resources in AWS, Azure, and Google Cloud.
Azure/Stormspotter
Azure Red Team tool for graphing Azure and Azure Active Directory objects
byt3bl33d3r/SprayingToolkit
Scripts to make password spraying attacks against Lync/S4B, OWA & O365 a lot quicker, less painful and more efficient
dafthack/MFASweep
A tool for checking if MFA is enabled on multiple Microsoft Services
hausec/PowerZure
PowerShell framework to assess Azure security
dafthack/MSOLSpray
A password spraying tool for Microsoft Online accounts (Azure/O365). The script logs if a user cred is valid, if MFA is enabled on the account, if a tenant doesn't exist, if a user doesn't exist, if the account is locked, or if the account is disabled.
sh377c0d3/Payloads
Payload Arsenal for Pentration Tester and Bug Bounty Hunters
nickvourd/Supernova
Real fucking shellcode encryptor & obfuscator tool
nyxgeek/onedrive_user_enum
onedrive user enumeration - pentest tool to enumerate valid o365 users
Isona/dirble
Fast directory scanning and scraping tool
ThePorgs/impacket
Impacket is a collection of Python classes for working with network protocols.
tfeldmann/simplematch
Minimal, super readable string pattern matching for python.
jsecurity101/JonMon
xpn/OktaPostExToolkit
BloodHoundAD/Legacy-AzureHound.ps1
OtterHacker/SetProcessInjection
fullmetalcache/PowerStripper
cedowens/Linode_Terraform_Scripts
Scripts to automate standing up hosts in Linode
codingo/graphql-wordlist
The only graphql wordlists you'll ever need. Operations, field names, type names... Collected on more than 60k distinct GraphQL schemas.