-
Updated
Mar 15, 2022 - Python
#
pentest
Here are 893 public repositories matching this topic...
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
security
hacking
web-application
cheatsheet
enumeration
penetration-testing
bounty
vulnerability
methodology
bugbounty
pentest
bypass
payload
payloads
hacktoberfest
privilege-escalation
redteam
API, CLI, and Web App for analyzing and finding a person's profile in +1000 social media \ websites
nodejs
javascript
python
cli
profile
social-media
osint
analysis
analyzer
pentesting
username
pentest
nodejs-cli
information-gathering
security-tools
reconnaissance
social-analyzer
person-profile
sosint
-
Updated
Mar 19, 2022 - JavaScript
A collection of hacking tools, resources and references to practice ethical hacking.
security
roadmap
hacking
penetration-testing
pentesting
post-exploitation
pentest
exploitation
hacking-tool
frameworks
information-gathering
web-hacking
hacktools
-
Updated
Jan 13, 2022
SpiderFoot automates OSINT for threat intelligence and mapping your attack surface.
python
osint
hacking
cybersecurity
infosec
pentesting
threatintel
pentest
cti
information-gathering
intelligence-gathering
security-tools
threat-intelligence
reconnaissance
footprinting
osint-framework
attack-surface
osint-reconnaissance
osint-tool
attacksurface
-
Updated
Mar 14, 2022 - Python
A list of resources for those interested in getting started in bug bounties
-
Updated
Sep 15, 2021
K8工具合集(内网渗透/提权工具/远程溢出/漏洞利用/扫描工具/密码破解/免杀工具/Exploit/APT/0day/Shellcode/Payload/priviledge/BypassUAC/OverFlow/WebShell/PenTest) Web GetShell Exploit(Struts2/Zimbra/Weblogic/Tomcat/Apache/Jboss/DotNetNuke/zabbix)
database
apt
exploit
scanner
hacking
password
poc
brute-force
pentest
bypass
crack
privilege-escalation
0day
getshell
netscan
rar-mysql
-
Updated
Mar 13, 2022 - PowerShell
A curated list of awesome infosec courses and training resources.
-
Updated
Mar 3, 2022
Next generation web scanner
ruby
security
web
scanner
hacking
owasp
penetration-testing
application-security
pentesting
recon
pentest
kali-linux
appsec
network-security
web-hacking
security-tools
penetration-test
hacking-tools
pentesting-tools
penetration-testing-tools
-
Updated
Feb 5, 2022 - Ruby
大型内网渗透扫描器&Cobalt Strike,Ladon9.1.4内置150个模块,包含信息收集/存活主机/端口扫描/服务识别/密码爆破/漏洞检测/漏洞利用。漏洞检测含MS17010/SMBGhost/Weblogic/ActiveMQ/Tomcat/Struts2,密码口令爆破(Mysql/Oracle/MSSQL)/FTP/SSH(Linux)/VNC/Windows(IPC/WMI/SMB/Netbios/LDAP/SmbHash/WmiHash/Winrm),远程执行命令(smbexec/wmiexe/psexec/atexec/sshexec/webshell),降权提权Runas、GetSystem,Poc/Exploit,支持Cobalt Strike 3.X-4.0
security
tools
hack
exploit
scanner
hacking
password
poc
brute-force
pentest
portscan
security-scanner
exp
security-tools
ladon
ipscanner
getshell
netscan
-
Updated
Mar 19, 2022 - C#
Git All the Payloads! A collection of web attack payloads.
-
Updated
Apr 22, 2021 - Shell
Patator is a multi-purpose brute-forcer, with a modular design and a flexible usage.
-
Updated
Mar 8, 2022 - Python
Collection of the cheat sheets useful for pentesting
-
Updated
Feb 28, 2022
Phishing Tool & Information Collector
-
Updated
Feb 9, 2022 - CSS
ffffffff0x 团队维护的安全知识框架,内容包括不仅限于 web安全、工控安全、取证、应急、蓝队设施部署、后渗透、Linux安全、各类靶机writup
security
collection
study
hacking
poc
infosec
ctf
pentest
markdown-article
writeup
blueteam
ics-security
security-tools
pentest-tool
redteam
linux-learning
post-penetration
-
Updated
Feb 22, 2022 - C++
Regala
commented
Mar 12, 2021
Is your feature request related to a problem? Please describe.
Currently the tool supports a limited type of output formats. Generating a HTML report is one solution to very easily review the results generated.
Describe the solution you'd like
ffuf has a good working example of this. Anything that has some sort of DataTables on top, to be able to do sor
The ultimate WinRM shell for hacking/pentesting
ruby
shell
docker
powershell
pentesting-windows
hacking
kerberos
pentesting
winrm
pentest
pass-the-hash
remote-management
win-rm
evil-winrm
psrp
-
Updated
Jan 18, 2022 - Ruby
One place for all the default credentials to assist the Blue/Red teamers activities on finding devices with default password 🛡️
exploit
cheatsheet
cybersecurity
infosec
pentesting
bugbounty
pentest
offensive-security
blueteam
default-password
credentials-gathering
-
Updated
Dec 28, 2021 - Jupyter Notebook
reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities
scanner
hacking
xss
subdomain
sqli
fuzzing
raspberry
recon
nuclei
vulnerabilities
bugbounty
pentest
hacktoberfest
ssrf
lfi
ssti
dorks
-
Updated
Mar 13, 2022 - Shell
A list of commands, scripts, resources, and more that I have gathered and attempted to consolidate for use as OSCP (and more) study material. Commands in 'Usefulcommands' Keepnote. Bookmarks and reading material in 'BookmarkList' CherryTree. Reconscan Py2 and Py3. Custom ISO building.
-
Updated
Jun 22, 2020 - C
XSS'OR - Hack with JavaScript.
-
Updated
Dec 12, 2021 - JavaScript
Awesome Node.js Security resources
-
Updated
Mar 21, 2022 - JavaScript
SSRF (Server Side Request Forgery) testing resources
-
Updated
Mar 9, 2022 - Python
Automatic SSRF fuzzer and exploitation tool
-
Updated
Mar 17, 2022 - Python
windows
kernel
tool
exploits
cve
pentest
cve-2020-1472
cve-2020-16898
cve-2020-16938
cve-2020-17087
cve-2021-1732
cve-2020-1054
cve-2021-33739
cve-2021-26868
cve-2021-36934
cve-2021-40444
cve-2021-40449
cve-2021-42287
cve-2021-42278
cve-2021-34486
-
Updated
Jan 20, 2022 - C
Penetration tests guide based on OWASP including test cases, resources and examples.
-
Updated
Apr 23, 2021
Improve this page
Add a description, image, and links to the pentest topic page so that developers can more easily learn about it.
Add this topic to your repo
To associate your repository with the pentest topic, visit your repo's landing page and select "manage topics."
I testing bruteforce my opencart store.
this is body request: