GhnimiWael / OSEP_Prep
This repository serves as a curated resource for OffSec's OSEP (PEN-300) certification preparation, containing useful links, materials, and references to aid in advanced penetration testing studies.
☆15Updated 5 months ago
Alternatives and similar repositories for OSEP_Prep:
Users that are interested in OSEP_Prep are comparing it to the libraries listed below
- Just learning around new stuff mostly Red Teaming and such but will try to see if I can update or simplify them more, nothing too exotic …☆39Updated 3 years ago
- pdfkit <0.8.6 command injection shell. The package pdfkit from 0.0.0 are vulnerable to Command Injection where the URL is not properly sa…☆20Updated 2 years ago
- Exploit for Microsoft SharePoint 2019☆13Updated last year
- Automating Juicy Potato Local Privilege Escalation CMD exploit for penetration testers.☆44Updated 2 years ago
- ☆49Updated 2 years ago
- cve-2022-42889 Text4Shell CVE-2022-42889 affects Apache Commons Text versions 1.5 through 1.9. It has been patched as of Commons Text ver…☆39Updated 2 years ago
- Just some random small tools for dealing with asp.net Forms Authentication Cookies☆23Updated 3 years ago
- Proof of Concept for Path Traversal in Apache Struts ("CVE-2023-50164")☆57Updated last year
- .Net Assembly loader for the GMSAPasswordReader☆12Updated 2 years ago
- Open-Source Phishing Toolkit☆19Updated 3 years ago
- A repository of tools developed while studying for OSEP. The contents here are not part of courseware but some tools, i wrote as an exten…☆1Updated 11 months ago
- Exploit for CVE-2024-20767 - Adobe ColdFusion☆34Updated 4 months ago
- List of some AD tools I frequently use☆45Updated 3 months ago
- A tool to abuse weak permissions of Active Directory Discretionary Access Control Lists (DACLs) and Access Control Entries (ACEs)☆57Updated 4 months ago
- The purpose of this repo is to share my research☆14Updated 3 weeks ago
- Tooling for the OffSec Experienced Pentester (OSEP) and OffSec Exploit Developer (OSED) course☆16Updated last year
- Check for CVE-2024-22024 vulnerability in Ivanti Connect Secure☆30Updated last year
- ☆34Updated 3 years ago
- Template Nuclei SSTI☆29Updated last year
- Microsoft Exchange password spray tool with proxy support.☆40Updated 3 years ago
- POC FortiOS SSL-VPN buffer overflow vulnerability☆27Updated last year
- Exploits targeting vBulletin.☆76Updated 2 years ago
- Generate password spraying lists based on the pwdLastSet-attribute of users.☆56Updated last year
- RCE through a race condition in Apache Tomcat☆55Updated 4 months ago
- Simple Python script to sort nuclei scans by severity and URL☆29Updated last year
- Arbitrary File Disclosure Vulnerability in Icinga Web 2 <2.8.6, <2.9.6, <2.10☆13Updated 2 years ago
- Proof of Concept Exploit for CVE-2024-9465☆29Updated 6 months ago
- User enumeration and password spraying tool for testing Azure AD☆69Updated 3 years ago
- Exploits Unauth Docker API☆40Updated 2 weeks ago
- ☆33Updated 2 weeks ago