0ca / BoxPwnrLinks
An experimental project exploring the use of Large Language Models (LLMs) to solve HackTheBox machines autonomously.
☆57Updated 2 months ago
Alternatives and similar repositories for BoxPwnr
Users that are interested in BoxPwnr are comparing it to the libraries listed below
Sorting:
- Verizon Burp Extensions: AI Suite☆131Updated 2 months ago
- ☆65Updated 2 months ago
- ☆32Updated 3 months ago
- ☆115Updated 2 years ago
- POC tool to create signed AWS API GET requests to bypass Guard Duty alerting of off-instance credential use via SSRF☆58Updated last year
- Automated vulnerability discovery and annotation☆67Updated 11 months ago
- GitHub Actions Cache Native Malware - for Educational and Research Purposes only.☆66Updated 2 months ago
- Hijack a slack bot to phish your way in☆55Updated 3 months ago
- ☆50Updated last year
- Burp Suite extension for testing Passkey systems.☆71Updated 3 months ago
- Use the GCP testIamPermissions functionality to bruteforce and discover your permissions☆38Updated 3 weeks ago
- gubble is a tool designed to audit Google Workspace group settings. It analyzes settings such as who can join, view membership, post mess…☆77Updated last month
- Determine privileges from cloud credentials via brute-force testing.☆69Updated 10 months ago
- This repository contains the pre-joining training materials given to aspiring researchers on the Vulnerability Researcher Development Pro…☆76Updated last month
- Blogpost series showcasing interesting cloud - web app security bugs☆49Updated 2 years ago
- Examine Chrome extensions for security issues☆85Updated 4 months ago
- A research project to add some brrrrrr to Burp☆181Updated 5 months ago
- Create notes during a security code review in VSCode 📝 Import your favorite SAST tool findings 🛠️ and collaborate with others 🤝☆133Updated 3 months ago
- AI-powered bug hunter - vscode plugin.☆36Updated 10 months ago
- Simple Command Line Tool to Enumerate Slack Workspace Names from Slack Webhook URLs.☆42Updated last year
- Converting your Burp Suite projects into JSON APIs which can be viewed with Swagger editor or imported into Postman.☆66Updated 7 months ago
- Enumeration/exploit/analysis/download/etc pentesting framework for GCP; modeled like Pacu for AWS; a product of numerous hours via @Webbi…☆252Updated 2 months ago
- A simple script which implements different Cognito attacks such as Account Oracle or Priviledge Escalation☆107Updated last year
- CaptainCredz is a modular and discreet password-spraying tool.☆117Updated last month
- ☆103Updated last week
- A public, open source physical security methodology☆46Updated last year
- A Caldera plugin for the emulation of complete, realistic cyberattack chains.☆54Updated 4 months ago
- Offensive Kubernetes Threat Matrix -- kubenomicon.com☆40Updated 6 months ago
- AutoPwnKey is a red teaming framework and testing tool using AutoHotKey (AHK), which at the time of creation proves to be quite evasive. …☆95Updated last week
- External Playbooks for Public Access☆39Updated 5 months ago