Starred repositories
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
Impacket is a collection of Python classes for working with network protocols.
match command-line arguments to their help text
CTF framework and exploit development library
PEDA - Python Exploit Development Assistance for GDB
Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv2/LMv2, Extended Security NTLMSSP and Basic HTTP authenticat…
Server-Side Template Injection and Code Injection Detection and Exploitation Tool
Privilege Escalation Project - Windows / Linux / Mac
Nginxpwner is a simple tool to look for common Nginx misconfigurations and vulnerabilities.
LinkedIn enumeration tool to extract valid employee names from an organization through search engine scraping
Automatic SSTI detection tool with interactive interface
Automatic Enumeration Tool based in Open Source tools
Subdomain and target enumeration tool built for offensive security testing
kernel privilege escalation enumeration and exploitation framework
Identify privilege escalation paths within and across different clouds
Internal penetration testing tool for Linux that can be used to enumerate OS information, domain information, shares, directories, and users through SMB.
This Bufferflow Guide includes instructions and the scripts necessary for Buffer Overflow Exploitation. This guide is a supplement for TheCyberMentor's walkthrough. Please watch his walkthrough if …
Vanquish is Kali Linux based Enumeration Orchestrator. Vanquish leverages the opensource enumeration tools on Kali to perform multiple active information gathering phases.
A series of python scripts for generating weird character combinations for bypassing web application firewalls (WAF) and XSS blockers
Notes and tools from my experiences reverse engineering firmware
A command line tool for deploying services and applications using git.
Python resource library for creating security related tooling