HackTricks-wiki / hacktricks
Welcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and news.
☆9,541Updated this week
Alternatives and similar repositories for hacktricks:
Users that are interested in hacktricks are comparing it to the libraries listed below
- GTFOBins is a curated list of Unix binaries that can be used to bypass local security restrictions in misconfigured systems☆11,246Updated 3 months ago
- PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)☆16,849Updated this week
- AutoRecon is a multi-threaded network reconnaissance tool which performs automated enumeration of services.☆5,317Updated 8 months ago
- Scripted Local Linux Enumeration & Privilege Escalation Checks☆7,199Updated last year
- Monitor linux processes without root permissions☆5,111Updated 2 years ago
- This repository contains cutting-edge open-source security tools (OST) for a red teamer and threat hunter.☆9,301Updated 5 months ago
- Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.☆8,394Updated last year
- A Workflow Engine for Offensive Security☆5,469Updated 2 weeks ago
- List of Awesome Red Teaming Resources☆7,078Updated last year
- The ultimate WinRM shell for hacking/pentesting☆4,722Updated 2 months ago
- A swiss army knife for pentesting networks☆8,587Updated last year
- RSA attack tool (mainly for ctf) - retrieve private key from weak public key and/or uncipher data☆5,930Updated 3 months ago
- Linux enumeration tool for pentesting and CTFs with verbosity levels☆3,522Updated last year
- Hosted Reverse Shell generator with a ton of functionality. -- (Great for CTFs)☆3,211Updated 3 months ago
- Adversary Emulation Framework☆8,915Updated this week
- 🎯 Cross Site Scripting ( XSS ) Vulnerability Payload List☆6,718Updated 7 months ago
- Collection of methodology and test case for various web vulnerabilities.☆6,251Updated 6 months ago
- Red Teaming Tactics and Techniques☆4,161Updated 6 months ago
- Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)☆7,282Updated this week
- A list of useful payloads and bypass for Web Application Security and Pentest/CTF☆63,309Updated this week
- The Havoc Framework☆7,260Updated 3 weeks ago
- A toolkit for testing, tweaking and cracking JSON Web Tokens☆5,617Updated 6 months ago
- A list of interesting payloads, tips and tricks for bug bounty hunters.☆6,032Updated last year
- This cheasheet is aimed at the CTF Players and Beginners to help them understand the fundamentals of Privilege Escalation with examples.☆3,354Updated 2 years ago
- Web application fuzzer☆6,059Updated 6 months ago
- Linux privilege escalation auditing tool☆5,799Updated last year
- Web path scanner☆12,558Updated this week
- 🎯 Command Injection Payload List☆3,131Updated 7 months ago
- Impacket is a collection of Python classes for working with network protocols.☆13,896Updated this week
- Nishang - Offensive PowerShell for red team, penetration testing and offensive security.☆8,993Updated 9 months ago