naivi24's Stars
Orange-Cyberdefense/GOAD
game of active directory
Hackplayers/evil-winrm
The ultimate WinRM shell for hacking/pentesting
S3cur3Th1sSh1t/WinPwn
Automation for internal Windows Penetrationtest / AD-Security
vaib25vicky/awesome-mobile-security
An effort to build a single place for all useful android and iOS security related stuff. All references and tools belong to their respective owners. I'm just maintaining it.
itm4n/PrintSpoofer
Abusing impersonation privileges through the "Printer Bug"
hysnsec/awesome-threat-modelling
A curated list of threat modeling resources (Books, courses - free and paid, videos, tools, tutorials and workshops to practice on ) for learning Threat modeling and initial phases of security review.
SpecterOps/BloodHound
Six Degrees of Domain Admin
ansjdnakjdnajkd/iOS
Most usable tools for iOS penetration testing
in28minutes/course-material
Course Material for in28minutes courses on Java, Spring Boot, DevOps, AWS, Google Cloud, and Azure.
NH-RED-TEAM/RustHound
Active Directory data ingestor for BloodHound Legacy written in Rust. 🦀
justakazh/sicat
The useful exploit finder
FalconForceTeam/FalconHound
FalconHound is a blue team multi-tool. It allows you to utilize and enhance the power of BloodHound in a more automated fashion. It is designed to be used in conjunction with a SIEM or other log aggregation tool.
Syslifters/OffSec-Reporting
Offensive Security OSCP, OSWP, OSEP, OSWA, OSWE, OSED, OSMR, OSEE, OSDA Exam and Lab Reporting / Note-Taking Tool
snoopysecurity/Vulnerable-Code-Snippets
A small collection of vulnerable code snippets
jasonniebauer/Nmap-Cheatsheet
:notebook: Reference guide for scanning networks with Nmap.
BeetleChunks/SpoolSploit
A collection of Windows print spooler exploits containerized with other utilities for practical exploitation.
hoaan1995/ZxCDDoS
ZxCDDoS for education with LAYER 7, LAYER 4, AMP METHODS
wh0amitz/KRBUACBypass
UAC Bypass By Abusing Kerberos Tickets
MatheuZSecurity/D3m0n1z3dShell
Demonized Shell is an Advanced Tool for persistence in linux.
U7P4L-IN/CALL-BOMBER
Free Unlimited Call Bombing Tool
menkrep1337/XSSCon
XSSCon: Simple XSS Scanner tool
thyagomota/aws-labs
A collection of hands-on labs to help learning the fundamentals of AWS cloud computing services.
TakahiroHaruyama/VDR
Vulnerable driver research tool, result and exploit PoCs
securitycipher/penetration-testing-roadmap
Complete Roadmap for Penetration Testing
Hari-prasaanth/Thick-Client-Pentest-Checklist
A OWASP Based Checklist With 80+ Test Cases
xhzeem/toxicache
Go scanner to find web cache poisoning vulnerabilities in a list of URLs
Nassim-Asrir/CVE-2023-36424
Windows Kernel Pool (clfs.sys) Corruption Privilege Escalation
0xSojalSec/Mobile-Application-Security
Geeoon/asploit
One line command and control backdoors for APIs and web applications.
darth-web/HackTheBox
A step-by-step walkthrough of different machines "pwned" on the CTF-like platform, HackTheBox.