Stars
A lightweight dynamic instrumentation library
Tutorials, examples, discussions, research proposals, and other resources related to fuzzing
A set of scripts to experiment with ASLR on Windows
venom - C2 shellcode generator/compiler/handler
Identifies the bytes that Microsoft Defender flags on.
Generate OpenConnect CSD files to bypass Cisco AnyConnect hostscan requirements
Security Tool to Look For Interesting Files in S3 Buckets
gramfuzz is a grammar-based fuzzer that lets one define complex grammars to generate text and binary data formats.
FuzzBench - Fuzzer benchmarking as a service.
ROPium is a tool that helps you building ROP exploits by finding and chaining gadgets together
A Coverage Explorer for Reverse Engineers
A repository of LIVE malwares for your own joy and pleasure. theZoo is a project created to make the possibility of malware analysis open and available to the public.
A collection of links related to Linux kernel security and exploitation
Printer Exploitation Toolkit - The tool that made dumpster diving obsolete.
Wiki to collect Red Team infrastructure hardening resources
Attack and defend active directory using modern post exploitation adversary tradecraft activity
A collection of Burpsuite Intruder payloads, BurpBounty payloads, fuzz lists, malicious file uploads and web pentesting methodologies and checklists.
🐎 Benchmarks for Inter-Process-Communication Techniques
Remote Desktop Protocol .NET Console Application for Authenticated Command Execution
Python script to parse Keytab files for macOS or *nix (typically /etc/krb5.keytab)
Demos of and walkthroughs on in-browser fuzzing using WebAssembly
Crowbar is brute forcing tool that can be used during penetration tests. It is developed to support protocols that are not currently supported by thc-hydra and other popular brute forcing tools.
A static analyzer for Java, C, C++, and Objective-C
Stuff about it-security that might be good to know