Pinned Repositories
www-project-secure-headers
The OWASP Secure Headers Project
burp-piper-custom-scripts
Custom scripts for the PIPER Burp extensions.
code-snippets-security-utils
Provides different utilities methods to apply processing from a security perspective.
log-requests-to-sqlite
BURP extension to record every HTTP request send via BURP and create an audit trail log of an assessment.
poc-graphql
Research on GraphQL from an AppSec point of view.
pst-digger
Program to analyze mails stored into a Microsoft Outlook PST file and find one based on search keywords.
toolbox-codescan
Customized toolbox to perform offline scanning of a code base.
toolbox-pentest-web
Docker toolbox for pentest of web based application.
virtualhost-payload-generator
BURP extension providing a set of values for the HTTP request "Host" header for the "BURP Intruder" in order to abuse virtual host resolution.
website-passive-reconnaissance
Script to automate, when possible, the passive reconnaissance performed on a website prior to an assessment.
righettod's Repositories
righettod/poc-graphql
Research on GraphQL from an AppSec point of view.
righettod/toolbox-pentest-web
Docker toolbox for pentest of web based application.
righettod/burp-piper-custom-scripts
Custom scripts for the PIPER Burp extensions.
righettod/log-requests-to-sqlite
BURP extension to record every HTTP request send via BURP and create an audit trail log of an assessment.
righettod/website-passive-reconnaissance
Script to automate, when possible, the passive reconnaissance performed on a website prior to an assessment.
righettod/powershell-android-utils
PowerShell module providing utility commands to manipulate a APK file on Windows
righettod/toolbox-jwt
Docker toolbox with different scripts having for the objective to perform different kinds of attacks against JWT tokens.
righettod/code-snippets-security-utils
Provides different utilities methods to apply processing from a security perspective.
righettod/SecLists
SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.
righettod/CheatSheetSeries
The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.
righettod/Invoke-CreateModuleHelpFile
PowerShell function to create a HTML help file for a module and all it's commands.
righettod/nuclei-templates
Community curated list of templates for the nuclei engine to find security vulnerabilities.
righettod/param-miner
righettod/sandbox
Provide network listeners during online training web challenges/labs.
righettod/toolbox-codescan
Customized toolbox to perform offline scanning of a code base.
righettod/voxxeddays-lux-2018
Demonstration videos and presentation regarding the talk given at the VOXXED LU 2018 conference.
righettod/voxxeddays-lux-2022
Demonstration videos and presentation regarding the talk given at the VOXXED LU 2022 conference.
righettod/www-project-secure-headers
The OWASP Secure Headers Project
righettod/BChecks
BChecks collection for Burp Suite Professional
righettod/bchecks-library
Store custom BCheck scripts created prior to propose them to the BCheck PortSwigger repository.
righettod/HTTPSignatures
💡My fork add some traces, drop some filterings and add supports for the signature using the HS2019 algorithms.
righettod/oshp-stats
Stats about HTTP response security headers usage mentioned by the OSHP.
righettod/oshp-validator
Venom tests suite to validate an HTTP security response headers configuration against OSHP recommendation.
righettod/righettod.github.io
Redirection to personal website
righettod/rsa_sign2n
Deriving RSA public keys from message-signature pairs
righettod/timesheet-utils
Program that I used to know the number of working days and hours according to Luxembourg public holidays to fill my professional timesheet.
righettod/toolbox-patator
Toolbox to have a always up to date docker image of the tools named "patator".
righettod/toolbox-regex
Toolbox to have a local instance of RegExr to create regex against sensitive/private content.
righettod/voxxeddays-lux-2016
Demonstration videos and presentation regarding the talk given at the VOXXED LU 2016 conference.
righettod/voxxeddays-lux-2024
Demonstration videos and presentation regarding the talk given at the VOXXED LU 2024 conference.