-
VarBITS
- Copenhagen, Denmark
Stars
Six Degrees of Domain Admin
A curated list of awesome infosec courses and training resources.
The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.
FLARE Obfuscated String Solver - Automatically extract obfuscated strings from malware.
Patch PE, ELF, Mach-O binaries with shellcode new version in development, available only to sponsors
OnionScan is a free and open source tool for investigating the Dark Web.
A security tool for multithreaded information gathering and service enumeration whilst building directory structures to store results, along with writing out recommendations for further testing.
FakeNet-NG - Next Generation Dynamic Network Analysis Tool
Gnuradio blocks and tools for receiving GSM transmissions
SpoolSample -> Responder w/NetNTLM Downgrade -> NetNTLMv1 -> NTLM -> Kerberos Silver Ticket
Slack Enumeration and Extraction Tool - extract sensitive information from a Slack Workspace
Active Directory ACL exploitation with BloodHound
A framework for identifying and launching exploits against internal network hosts. Works via WebRTC IP enumeration combined with WebSockets and external resource fingerprinting.
A command line tool to detect shared passwords
Orc is a post-exploitation framework for Linux written in Bash
Material for the training "Developing Burp Suite Extensions – From Manual Testing to Security Automation"
WordPress Plugin Security Testing Cheat Sheet
Example code how to play a stream with VLC
Leverage certificate transparency live feed to monitor for newly issued subdomain certificates (last 90 days, configurable), for domains participating in bug bounty programs.
Software-defined radio application written in Python
Codex Gigas malware DNA profiling search engine discovers malware patterns and characteristics assisting individuals who are attracted in malware hunting.
Open Source Office Malware Generation & Polymorphic Engine for Red Teams and QA testing
A PoC demonstrating techniques exploiting CVE-2016-5696 Off-Path TCP Exploits: Global Rate Limit Considered Dangerous
Web shells for PHP/ASP/ASP.NET using the least number of characters