Security
Simple script to generate commands to achieve reverse shells.
A script that you can run in the background!
📙 Markdown Templates for Offensive Security OSCP, OSWE, OSCE, OSEE, OSWP exam report
AWSGoat : A Damn Vulnerable AWS Infrastructure
One place for all the default credentials to assist the Blue/Red teamers activities on finding devices with default password 🛡️
The Cyber Swiss Army Knife - a web app for encryption, encoding, compression and data analysis
Tool for automatic exploitation of XXE vulnerability using direct and different out of band methods.
A FREE comprehensive reverse engineering tutorial covering x86, x64, 32-bit/64-bit ARM, 8-bit AVR and 32-bit RISC-V architectures.
Quickly Extracts IP's, Email Addresses, Hashes, Files, Credit Cards, Social Security Numbers and a lot More From Text
Tool to help exploit XXE vulnerabilities
Server-Side Template Injection and Code Injection Detection and Exploitation Tool
A collection of awesome penetration testing resources, tools and other shiny things
Web and mobile application security training platform
EyeWitness is designed to take screenshots of websites, provide some server header info, and identify default credentials if possible.
Collocation of technical documentation and guides for devops, developers, pentesters, systems administrators and other IT professionals website
An advanced, yet simple, tunneling/pivoting tool that uses a TUN interface.
"Try Harder" is a cybersecurity retro game designed to simulate 100 real-world scenarios that will help you prepare for the Offensive Security Certified Professional (OSCP) exam, all while offering…
A collection of bookmarks for penetration testers, bug bounty hunters, malware developers, reverse engineers and anyone who is just interested in infosec topics.
This is a collection of some of mine mindmaps abount pentesting created with Obsidian.
A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.
Obtain GraphQL API schema even if the introspection is disabled
PowerSploit - A PowerShell Post-Exploitation Framework
DomainPasswordSpray is a tool written in PowerShell to perform a password spray attack against users of a domain. By default it will automatically generate the userlist from the domain. BE VERY CAR…