Starred repositories
Scans remote JavaScript files with Trufflehog + Semgrep to detect leaked secrets
fabric is an open-source framework for augmenting humans using AI. It provides a modular framework for solving specific problems using a crowdsourced set of AI prompts that can be used anywhere.
This repository serves as a curated resource for OffSec's OSEP (PEN-300) certification preparation, containing useful links, materials, and references to aid in advanced penetration testing studies.
Tool for Active Directory Certificate Services enumeration and abuse
This repo will contain and host the playbooks that are used to deploy different components in ELK stack and winrm for Remote powershell
Attack Graph Visualizer and Explorer (Active Directory) ...Who's *really* Domain Admin?
Scripts for Analysis of a RCE in Moodle Calculated Questions (CVE-2024-43425)
Scrape domain names from SSL certificates of arbitrary hosts
ISO 27001 Toolkit by QZ
PHP CGI Argument Injection (CVE-2024-4577) Remote Code Execution PoC
Create a vulnerable active directory that's allowing you to test most of the active directory attacks in a local lab
This is a proof of concept for CVE-2024-20356, a Command Injection vulnerability in Cisco's CIMC.
The recursive internet scanner for hackers. 🧡
This repository contains sample programs that mimick behavior found in real-world malware. The goal is to provide source code that can be compiled and used for learning purposes, without having to …
Jan is an open source alternative to ChatGPT that runs 100% offline on your computer
Active Directory and Internal Pentest Cheatsheets
Exploit for Microsoft SharePoint 2019