HackTricks-wiki / hacktricksLinks
Welcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and news.
☆10,093Updated this week
Alternatives and similar repositories for hacktricks
Users that are interested in hacktricks are comparing it to the libraries listed below
Sorting:
- GTFOBins is a curated list of Unix binaries that can be used to bypass local security restrictions in misconfigured systems☆11,864Updated 8 months ago
- PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)☆17,956Updated 3 weeks ago
- Fast web fuzzer written in Go☆14,330Updated 3 months ago
- Scripted Local Linux Enumeration & Privilege Escalation Checks☆7,472Updated last year
- A swiss army knife for pentesting networks☆8,830Updated last year
- AutoRecon is a multi-threaded network reconnaissance tool which performs automated enumeration of services.☆5,603Updated last month
- A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.☆6,180Updated 4 months ago
- Monitor linux processes without root permissions☆5,563Updated 2 years ago
- Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)☆7,755Updated 2 weeks ago
- Impacket is a collection of Python classes for working with network protocols.☆14,581Updated this week
- A toolkit for testing, tweaking and cracking JSON Web Tokens☆5,969Updated 2 months ago
- This repository contains cutting-edge open-source security tools (OST) for a red teamer and threat hunter.☆9,673Updated 2 months ago
- Directory/File, DNS and VHost busting tool written in Go☆12,204Updated last week
- Hosted Reverse Shell generator with a ton of functionality. -- (Great for CTFs)☆3,487Updated last month
- A fast, simple, recursive content discovery tool written in Rust.☆6,788Updated 3 months ago
- The ultimate WinRM shell for hacking/pentesting☆4,940Updated 7 months ago
- reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and findin…☆6,469Updated last month
- Web application fuzzer☆6,233Updated 11 months ago
- Adversary Emulation Framework☆9,699Updated this week
- Collection of methodology and test case for various web vulnerabilities.☆6,530Updated last month
- A list of useful payloads and bypass for Web Application Security and Pentest/CTF☆68,696Updated this week
- Linux privilege escalation auditing tool☆6,060Updated last year
- The all-in-one browser extension for offensive security professionals 🛠☆6,185Updated 6 months ago
- reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via E…☆8,044Updated 5 months ago
- Fast passive subdomain enumeration tool.☆12,007Updated this week
- The dynamic infrastructure framework for everybody! Distribute the workload of many different scanning tools with ease, including nmap, f…☆4,260Updated 9 months ago
- Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.☆8,596Updated last year
- 📡 PoC auto collect from GitHub. ⚠️ Be careful Malware.☆7,111Updated this week
- Gather and update all available and newest CVEs with their PoC.☆7,098Updated this week
- A list of public penetration test reports published by several consulting firms and academic security groups.☆9,038Updated this week