- All languages
- ActionScript
- Assembly
- Batchfile
- Bicep
- BlitzBasic
- Boo
- C
- C#
- C++
- CSS
- CodeQL
- Dockerfile
- Go
- Groovy
- HCL
- HTML
- Java
- JavaScript
- Jupyter Notebook
- Kotlin
- Lua
- MDX
- Makefile
- Markdown
- Meson
- Nim
- Nix
- OCaml
- OpenEdge ABL
- PHP
- Perl
- PowerShell
- Python
- Ruby
- Rust
- SCSS
- SaltStack
- Shell
- Swift
- TeX
- TypeScript
- Vim Script
- Vue
- XSLT
- YARA
- Zig
Starred repositories
Dow Jones Hammer : Protect the cloud with the power of the cloud(AWS)
Note: Going through a full re-write of the tooling so the current versions in the repo do not work!
Sheepl : Creating realistic user behaviour for supporting tradecraft development within lab environments
Cloud-related research releases from the Rhino Security Labs team.
Pentest/BugBounty progress control with scanning modules
A unified DevSecOps Framework that allows you to go from iterative, collaborative Threat Modeling to Application Security Test Orchestration
More examples using the Impacket library designed for learning purposes.
Red team & penetration testing tools to exploit the capabilities of Intel AMT
An Ansible playbook to provision a host for penetration testing and CTF challenges
Kubernetes Security Process and Security Committee docs
CTFlearn writeups of all the challenges I have solved. It covers all the domains including Cryptography, Forensics, Reversing, Pwning and other Misc problems.
Bindings of the r2 api for Valabind and friends
Hands-On AWS Penetration Testing with Kali Linux published by Packt
Catalina theme ported from clover to rEFInd
A collection of over 5.1 million sub-domains and assets belonging to public bug bounty programs, compiled into a repo, for performing bulk operations.
Keystroke injection vulnerabilities in wireless presentation clickers
A comprehensive, systematic and actionable way to understand attacker behaviors and techniques with respect to the software supply chain
Endpoint for Out-of-Band Exfiltration (DNS & HTTP)
This script is a multi-threaded Okta password sprayer.
Collection of IronPython scripts and executables for penetration testing
Intentionally Vulnerable Flask app for use in Demos
WebFuzzer - Web Application Security Scanner by Cystack Team
Spark MLib Training Models for Network Security
This repo contains a series of challenges that get harder and harder to exploit