Lists (7)
Sort Name ascending (A-Z)
azure
azure pentest links✨ Inspiration
Machine Learing and AI
Machine Learing and AIMobile Pentest
Mobile PentestOSCP
OSCPUsernames and Passwords
Default username and password for servicesWeb Pentest
Web PentestStarred repositories
📚 Freely available programming books
Modern JavaScript Tutorial
GTFOBins is a curated list of Unix binaries that can be used to bypass local security restrictions in misconfigured systems
A list of public penetration test reports published by several consulting firms and academic security groups.
reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines, recon data correlation and organization, continuous …
渗透测试有关的POC、EXP、脚本、提权、小工具等---About penetration-testing python-script poc getshell csrf xss cms php-getshell domainmod-xss csrf-webshell cobub-razor cve rce sql sql-poc poc-exp bypass oa-getshell cve…
Kubernetes Goat is a "Vulnerable by Design" cluster environment to learn and practice Kubernetes security using an interactive hands-on playground 🚀
Malware samples, analysis exercises and other interesting resources.
WADComs is an interactive cheat sheet, containing a curated list of offensive security tools and their respective commands, to be used against Windows/AD environments.
A plugin-based scanner that aids security researchers in identifying issues with several CMSs, mainly Drupal & Silverstripe.
vAPI is Vulnerable Adversely Programmed Interface which is Self-Hostable API that mimics OWASP API Top 10 scenarios through Exercises.
A collection of bookmarks for penetration testers, bug bounty hunters, malware developers, reverse engineers and anyone who is just interested in infosec topics.
OWASP Foundation Web Respository
My Notes about Penetration Testing
a mindmap on pentest #pentestmindmap #oscp #lpt #ecsa #ceh #bugbounty
GTFOArgs is a curated list of programs and their associated arguments that can be exploited to gain privileged access or execute arbitrary commands, using argument injection.
OWASP Foundation Web Repository for OWASP Kerala Chapter
Redirect from aquasecurity.github.io to github.com/aquasecurity
LOTWebHooks is a community-driven project documenting webhooks that may be exploited for data exfiltration and C2 communications etc.
LOTWebSockets is a community-driven project documenting websockets that may be exploited for data exfiltration and C2 communications etc.