- All languages
- ActionScript
- Assembly
- Batchfile
- Bicep
- BlitzBasic
- Boo
- C
- C#
- C++
- CSS
- CodeQL
- Dockerfile
- Go
- Groovy
- HCL
- HTML
- Java
- JavaScript
- Jupyter Notebook
- Kotlin
- Lua
- MDX
- Makefile
- Markdown
- Meson
- Nim
- Nix
- OCaml
- OpenEdge ABL
- PHP
- Perl
- PowerShell
- Python
- Ruby
- Rust
- SCSS
- SaltStack
- Shell
- Swift
- TeX
- TypeScript
- Vim Script
- Vue
- XSLT
- YARA
- Zig
Starred repositories
🙃 A delightful community-driven (with 2,400+ contributors) framework for managing your zsh configuration. Includes 300+ optional plugins (rails, git, macOS, hub, docker, homebrew, node, php, python…
A collection of ZSH frameworks, plugins, themes and tutorials.
💥 A curated list of Terminal frameworks, plugins & resources for CLI lovers.
List of open source tools for AWS security: defensive, offensive, auditing, DFIR, etc.
Some setup scripts for security research tools.
Linux privilege escalation auditing tool
The dynamic infrastructure framework for everybody! Distribute the workload of many different scanning tools with ease, including nmap, ffuf, masscan, nuclei, meg and many more!
Custom bash scripts used to automate various penetration testing tasks including recon, scanning, enumeration, and malicious payload creation using Metasploit. For use with Kali Linux.
Dictionary collection project such as Pentesing, Fuzzing, Bruteforce and BugBounty. 渗透测试、SRC漏洞挖掘、爆破、Fuzzing等字典收集项目。
Nmap on steroids. Simple CLI with the ability to run pure Nmap engine, 31 modules with 459 scan profiles.
A curated list of the most common and most interesting robots.txt disallowed directories.
Cloud Security Suite - One stop tool for auditing the security posture of AWS/GCP/Azure infrastructure.
A template for simple System V init scripts
A Password Spraying tool for Active Directory Credentials by Jacob Wilkin(Greenwolf)
Kubernetes security notes and best practices
My configuration. Minimalist, but helps save a few thousand keystrokes a day.
Tools, scripts and tips useful during Penetration Testing engagements.
Running HashiCorp's Consul on Kubernetes
A scripted pipeline of tools to streamline the bug bounty/penetration test reconnaissance phase, so you can focus on chomping bugs.
You're a #pentester and you totally pwn that linux box, congrats! Now what? You can launch gimmecredz.sh which will try to extract all passwords from known locations.