- Internet
- ntrunr.github.io
- @OffSecRunner
- @n7runr
- @ntrunr
Highlights
Lists (1)
Sort Name ascending (A-Z)
Starred repositories
f.k.a. Awesome ChatGPT Prompts. Share, discover, and collect prompts from the community. Free and open source — self-host for your organization with complete privacy.
Like cURL, but for gRPC: Command-line tool for interacting with gRPC servers
Headless e-commerce administration built with Laravel to create and manage online store.
a Qt-based GUI for SecureDrop journalists 📰🗞️
Situational Awareness commands implemented using Beacon Object Files
rasta-mouse / ThreatCheck
Forked from matterpreter/DefenderCheckIdentifies the bytes that Microsoft Defender / AMSI Consumer flags on.
Active Directory and Internal Pentest Cheatsheets
Sudomy is a subdomain enumeration tool to collect subdomains and analyzing domains performing automated reconnaissance (recon) for bug hunting / pentesting
A PoC that packages payloads into output containers to evade Mark-of-the-Web flag & demonstrate risks associated with container file formats. Supports: ZIP, 7zip, PDF, ISO, IMG, CAB, VHD, VHDX
A tool for generating .NET serialized gadgets that can trigger .NET assembly load/execution when deserialized using BinaryFormatter from JS/VBS/VBA based scripts.
The recursive internet scanner for hackers. 🧡
Solutions for all the WebSecurityAcademy with Videos
Active Directory pentesting mind map
This tool generates gopher link for exploiting SSRF and gaining RCE in various servers
Ultimate Burp Suite Exam and PortSwigger Labs Guide.
Fast and customizable subdomain wordlist generator using DSL
Check for LDAP protections regarding the relay of NTLM authentication
Small and highly portable detection tests based on MITRE's ATT&CK.
The world's most popular free, open source ad serving system. You can download the latest release at:
this repo contains all types of api wordlists for api testing..
All of my CTF(THM, HTB, pentesterlab, vulnhub etc.) wirte-ups & notes
A curated list of bugbounty writeups (Bug type wise) , inspired from https://github.com/ngalongc/bug-bounty-reference
Damn Vulnerable GraphQL Application is an intentionally vulnerable GraphQL service implementation designed for learning about and practising GraphQL Security.
Introductory guide on the configuration and subsequent exploitation of Active Directory Certificate Services with Certipy. Based on the white paper Certified Pre-Owned.
Tool for Active Directory Certificate Services enumeration and abuse