Lists (1)
Sort Name ascending (A-Z)
Stars
Nuclei template for detecting react2shell (CVE-2025-55182 & CVE-2025-66478)
Red Teaming Tactics and Techniques
Orange Cyberdefense mindmaps
Simple & Powerful PowerShell Script Obfuscator
https://ad-lab.gitbook.io/building-a-windows-ad-lab/
Updog is a replacement for Python's SimpleHTTPServer. It allows uploading and downloading via HTTP/S, can set ad hoc SSL certificates and use http basic auth.
A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.
An advanced cross-platform tool that automates the process of detecting and exploiting SQL injection security flaws
Automated NoSQL database enumeration and web application exploitation tool.
Microsoft Azure Security Engineer Associate (AZ-500) Study Notes
Security Engineer Prep for Azure
Study Guide for the Microsoft Azure Security Technologies Exam
ZMap is a fast single packet network scanner designed for Internet-wide network surveys.
This repo includes plenty of references for Azure learning, especially for the Azure certs and Azure architecture, and any other learning materials e.g. security and automation topics.
Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)
Spoofy is a program that checks if a list of domains can be spoofed based on SPF and DMARC records.
Takes a list of URLs and returns their HTTP response codes
smbcrawler is no-nonsense tool that takes credentials and a list of hosts and 'crawls' (or 'spiders') through those shares
Basic implementation of certstream to print new subdomains and domains
hakluke / dumpcn
Forked from samirettali/dumpcnGet all the CNs from a list of domains
Turns any junk text into a usable wordlist for brute-forcing.
Feed it a list of subdomains, it will resolve them and tell you which ones are internal
hakip2host takes a list of IP addresses via stdin, then does a series of checks to return associated domain names.
This library provides functionality for fetching and parsing information about Common Vulnerabilities and Exposures (CVE) using the NIST National Vulnerability Database (NVD) RESTful API.