Lists (2)
Sort Name ascending (A-Z)
Stars
lgandx / Responder
Forked from SpiderLabs/ResponderResponder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv2/LMv2, Extended Security NTLMSSP and Basic HTTP authenticat…
WAFW00F allows one to identify and fingerprint Web Application Firewall (WAF) products protecting a website.
Modular command-line tool to parse, create and manipulate JWT tokens for hackers
mkaring / ConfuserEx
Forked from yck1509/ConfuserExAn open-source, free protector for .NET applications
List DTDs and generate XXE payloads using those local DTDs.
🔨 A modern multiple reverse shell sessions manager written in go
Another Windows Local Privilege Escalation from Service Account to System
Transparent proxy server that works as a poor man's VPN. Forwards over ssh. Doesn't require admin. Works with Linux and MacOS. Supports DNS tunneling.
Abusing impersonation privileges through the "Printer Bug"
A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.
A tool to dump the login password from the current linux user
The cheat sheet about Java Deserialization vulnerabilities
SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, se…
Preparation guide for Offensive Security's PEN-300 course and OSEP certification exam
The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.
One rule to crack all passwords. or atleast we hope so.
The goal of this repository is to document the most common techniques to bypass AppLocker.
Seatbelt is a C# project that performs a number of security oriented host-survey "safety checks" relevant from both offensive and defensive security perspectives.
This tool compares a targets patch levels against the Microsoft vulnerability database in order to detect potential missing patches on the target. It also notifies the user if there are public expl…
Enumerate missing KBs and suggest exploits for useful Privilege Escalation vulnerabilities
PowerShell script to quickly find missing software patches for local privilege escalation vulnerabilities.
A tool to perform Kerberos pre-auth bruteforcing