- Singapore
-
-
PortTunnelingExplained Public
I keep notes on how port tunneling works, explain the different techniques and specify which scenario to deploy which techniques.
UpdatedMar 17, 2025 -
-
EDRNoiseMaker Public
Forked from amjcyber/EDRNoiseMakerDetect WFP filters blocking EDR communications
PowerShell GNU General Public License v3.0 UpdatedNov 1, 2024 -
XXE-study Public
This repository contains various XXE labs set up for different languages and their different parsers. This may alternatively serve as a playground to teach or test with Vulnerability scanners / WAF…
-
SharpRDP Public
Forked from DiedB/SharpRDPRemote Desktop Protocol .NET Console Application for Authenticated Command Execution
C# BSD 3-Clause "New" or "Revised" License UpdatedFeb 22, 2024 -
cmd-to-powershell Public
Attempts to map various CMD enumerations to powershell version without creating executable process.
PowerShell UpdatedFeb 3, 2024 -
gophish Public
Forked from gophish/gophishOpen-Source Phishing Toolkit
-
Vulnerable-VueJS Public
A repository to study attack surface of VueJS. Many articles online talked about VueJS vulnerabilities in lengthy and wordly sentences with little example codes. Here, I aim to provide short and si…
-
aws_cpt Public
Forked from violenttestpen/aws_cptAWS Cloud Pentest Utility - Helper scripts for a quicker Cloud PT on AWS environments
Python UpdatedJan 6, 2023 -
Burp-Audit-Configs Public
Targeted vulnerability scanning for burp suite.
GNU General Public License v2.0 UpdatedNov 16, 2022 -
-
cloudgoat Public
Forked from RhinoSecurityLabs/cloudgoatCloudGoat is Rhino Security Labs' "Vulnerable by Design" AWS deployment tool
Python BSD 3-Clause "New" or "Revised" License UpdatedMay 4, 2022 -
-
log-viewer Public
Forked from PortSwigger/log-viewerLogs is a Burp Suite extension to work with log files.
-
-
can-i-take-over-xyz Public
Forked from EdOverflow/can-i-take-over-xyz"Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.
UpdatedOct 5, 2021 -
-
StockCat Public
Forked from thehoneymad/StockCatA small set of dumb tools for a guy who is learning basics of finance.
Python MIT License UpdatedMar 17, 2021 -
aws-mock-metadata Public
Forked from jtblin/aws-mock-metadataMock ec2 instance metadata service that can run on a developer machine
Go Other UpdatedDec 21, 2020 -
-
Pastejacking Public
Forked from dxa4481/PastejackingA demo of overriding what's in a person's clipboard
HTML GNU General Public License v3.0 UpdatedAug 31, 2020 -
PayloadsAllTheThings Public
Forked from swisskyrepo/PayloadsAllTheThingsA list of useful payloads and bypass for Web Application Security and Pentest/CTF
Python MIT License UpdatedJul 12, 2020 -
replicator Public
Forked from PortSwigger/replicatorBurp extension to help developers replicate findings from pen tests
Java UpdatedApr 28, 2020 -
-
RAU_crypto Public
Forked from bao7uo/RAU_cryptoTelerik UI for ASP.NET AJAX File upload and .NET deserialisation exploit (CVE-2017-11317, CVE-2017-11357, CVE-2019-18935)
Python Apache License 2.0 UpdatedMar 23, 2020 -
-
-
-
oh-my-zsh Public
Forked from ohmyzsh/ohmyzshA delightful community-driven (with 1,200+ contributors) framework for managing your zsh configuration. Includes 200+ optional plugins (rails, git, OSX, hub, capistrano, brew, ant, php, python, etc…
Shell Other UpdatedMar 1, 2019