High-performance secrets scanner. CLI, Go library, Burp Suite extension, and Chrome extension. 487 detection rules with live credential vali…
A webshell application and interactive shell for pentesting Apache Tomcat servers.
TOP All bugbounty pentesting CVE-2023- POC Exp RCE example payload Things
An XSS exploitation command-line interface and payload generator.
Some Useful Tricks for Pentest Android and iOS Apps
Web Application Penetration Testing
Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more
Master cybersecurity skills with this TryHackMe free path, includes a collection of my write-ups, solutions and progress tracking.
TryHackMe CTFs writeups, notes, drafts, scrabbles, files and solutions.
Red Team Tactics, Techniques, and Procedures
A turbo traffic generator pentesting tool to generate random traffic with random MAC and IP addresses in addition to random sequence numbers…
A bot that helps you to get more followers on Twitch
This is a mirror of https://codeberg.org/katze/tx2hax
Cross-platform library for binary debugging and memory hacking written in Rust
Exploit for the Wii U's USB Host Stack
项目包含1 、FTP 未授权访问(21) 2 、LDAP 未授权访问(389) 3 、Rsync 未授权访问(873) 4 、ZooKeeper 未授权访问(2181) 5 、Docker 未授权访问(2375) 6 、Docker Registry未授权(5000) 7 、Ki…
未授权检测的命令行版V1.0,支持批量检测,导出结果,项目参考sqlmap使用随机user-agent。本项目有两个版本,一个是带有GUI界面的,一个是命令行版本,未授权检测目前不包括默认密码检测
PowerShell toolkit that extracts locked Windows files (SAM, SYSTEM, NTDS, ...) using MFT parsing and raw disk reads
Simple tool for using a PowerShell downgrade attack and inject shellcode straight into memory. Works with Metasploit payloads and custom she…
This is a simple Go web server that allows users to upload files and view a list of the uploaded files. The server can be run locally or dep…
Generate and test domain typos and variations to detect and perform typo squatting, URL hijacking, phishing, and corporate espionage.
Username tools for penetration testing
Industry-leading free, high-performance, AI and semantic technology Web Application Firewall and API Security Gateway (WAAP) - UUSEC WAF.
Rust library for call stack spoofing on Windows, allowing you to execute arbitrary functions with a forged call stack that evades analysis, …