Pinned Repositories
AggressorScripts
Collection of Aggressor scripts for Cobalt Strike 3.0+ pulled from multiple sources
AutoRDPwn
The Shadow Attack Framework
awesome-burp-extensions
A curated list of amazingly awesome Burp Extensions
bbqsql
SQL Injection Exploitation Tool
bettercap-ng
bettercap-ng is a complete reimplementation of bettercap, the Swiss army knife for network attacks and monitoring. It is faster, stabler, smaller, easier to install and to use.
Huge-Collection-of-CheatSheet
Share of my Huge Collection of Cheatsheet (Coding, Cheat, Pinouts, Command Lists, Etc.)
PRETty
"PRinter Exploitation Toolkit" LAN automation tool
reverse-shell-cheatsheet
🙃 Reverse Shell Cheat Sheet 🙃
security-cheatsheets
🔒 A collection of cheatsheets for various infosec tools and topics.
unicorn
Unicorn is a simple tool for using a PowerShell downgrade attack and inject shellcode straight into memory. Based on Matthew Graeber's powershell attacks and the powershell bypass technique presented by David Kennedy (TrustedSec) and Josh Kelly at Defcon 18.
juan157's Repositories
juan157/AllAboutBugBounty
All about bug bounty (bypasses, payloads, and etc)
juan157/awesome-pentest
A collection of awesome penetration testing resources, tools and other shiny things
juan157/Callback_Shellcode_Injection
POCs for Shellcode Injection via Callbacks
juan157/hacktricks
Welcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and news.
juan157/injectAmsiBypass
Cobalt Strike BOF - Bypass AMSI in a remote process with code injection.
juan157/RedTeam-Tactics-and-Techniques
Red Teaming Tactics and Techniques
juan157/thief_raccoon
Thief Raccoon is a tool designed for educational purposes to demonstrate how phishing attacks can be conducted on various operating systems. This tool is intended to raise awareness about cybersecurity threats and help users understand the importance of security measures like 2FA and password
juan157/vuls
Agent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices
juan157/adempiere
ADempiere Business Suite ERP/CRM/MFG/SCM/POS done the Bazaar way in an open and unabated fashion. Focus is on the Community that includes Subject Matter Specialists, Implementors and End-Users.
juan157/Awesome-Cloud-PenTest
juan157/Bash-Oneliner
A collection of handy Bash One-Liners and terminal tricks for data processing and Linux system maintenance.
juan157/BugBountyStuff
Stuff for bug bounty
juan157/BugBuntu
BugBuntu Linux
juan157/cloud-penetration-testing
A curated list of cloud pentesting resource, contains AWS, Azure, Google Cloud
juan157/cloud-pentest-kali
Kali image with custom dependencies geared toward AWS penetration testing for use in CTF's, red teaming exercises, & diagnostics
juan157/cloud_pentest_scripts
Just a few scripts I have written over the years to cause havoc and wind up SysOps - might be of use for others, for testing purposes of course! More information on these scripts can be found at https://devsecopz.blogspot.com
juan157/cloudfox
Automating situational awareness for cloud penetration tests.
juan157/drivebadger
Open source platform for covert data exfiltration operations, supporting all device types: computers, servers, mobile phones, tablets, pen drives and photo cameras.
juan157/HackingWithSwift
The project source code for Hacking with iOS.
juan157/JustTryHarder
JustTryHarder, a cheat sheet which will aid you through the PWK course & the OSCP Exam. (Inspired by PayloadAllTheThings)
juan157/Offensive-Reverse-Shell-Cheat-Sheet
Offensive Reverse Shell (Cheat Sheet)
juan157/OffensiveRust
Rust Weaponization for Red Team Engagements.
juan157/oneliner-bugbounty
oneliner commands for bug bounties
juan157/OSCP2
OSCP Cheat Sheet
juan157/pegasus_spyware
decompiled pegasus_spyware
juan157/pentest_cloud_2
juan157/Priv2Admin
Exploitation paths allowing you to (mis)use the Windows Privileges to elevate your rights within the OS.
juan157/RPCSCAN
rpc map scan tool
juan157/ShadowSteal
Pure Nim implementation for exploiting CVE-2021-36934, the SeriousSAM local privilege escalation
juan157/snoop
Secretly record audio and video with chromium based browsers.