- Somewhere between 1's and 0's
- fadymoheb.com
- in/fadymoheb
- N1NJ10
- @N1NJ10_
- https://redteamrecipes.com
Highlights
- Pro
Stars
🕷️ An adaptive Web Scraping framework that handles everything from a single request to a full-scale crawl!
Collection of Cyber Threat Intelligence sources from the deep and dark web
Evilginx Phishing Infrastructure Setup Guide - Securing Evilginx and Gophish Infrastructure, Removing IOCs, Phishing TTPs
Public malware techniques used in the wild: Virtual Machine, Emulation, Debuggers, Sandbox detection.
A comprehensive modern architecture model is proposed to integrate platform solutions and tooling to support a professional Red Team.
A curated list of Awesome Threat Intelligence resources
Use MCP and OpenAPI to safely control Proxmox VE VMs, LXCs, backups, and snapshots from LLMs and AI agents.
Self-hosted homelab infrastructure visualizer — interactive network diagram with live status monitoring
Some usefull Scripts and Executables for Pentest & Forensics
Pre-Built Vulnerable Environments Based on Docker-Compose
Remotely Enumerate sessions using undocumented Windows Station APIs
A community-driven collection of BloodHound queries
real time face swap and one-click video deepfake with only a single image
Kerberos relaying and unconstrained delegation abuse toolkit
一款内网综合扫描工具,方便一键自动化、全方位漏扫扫描。(An intranet comprehensive scanning tool, enabling one-click automated, all-round vulnerability scanning)
Sudomy is a subdomain enumeration tool to collect subdomains and analyzing domains performing automated reconnaissance (recon) for bug hunting / pentesting
This repo is for WMIOps, a powershell script which uses WMI for various purposes across a network.
Autonomous multi-agent pipelines from YAML. Any LLM. Zero boilerplate.
This tool extracts Credit card numbers, NTLM(DCE-RPC, HTTP, SQL, LDAP, etc), Kerberos (AS-REQ Pre-Auth etype 23), HTTP Basic, SNMP, POP, SMTP, FTP, IMAP, etc from a pcap file or from a live interface.
Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.
An extremely effective subdomain enumeration wordlist of 3,000,000 lines, crafted by harvesting SSL certs from the entire IPv4 space.
Generate and test domain typos and variations to detect and perform typo squatting, URL hijacking, phishing, and corporate espionage.
Domain name permutation engine for detecting homograph phishing attacks, typo squatting, and brand impersonation
Golang tool designed to exfiltrate passwords found via the sshd and su services