Audit and pentest methodologies for Linux including internal enumeration, privesc, lateral movement, etc.
☆18Apr 3, 2026Updated 4 months ago
Alternatives and similar repositories for Linux-Exploitation
Users that are interested in Linux-Exploitation are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- WannaCry_HTA 是一个基于 HTA(HTML Application)技术开发的高度仿真 WannaCry 勒索病毒界面模拟程序。该项目简单、完全可控,专为安全研究、应急演练和安全教育场景设计。界面UI参考zR00t1师傅项目编写。☆24Aug 13, 2025Updated 11 months ago
- ☆18May 3, 2024Updated 2 years ago
- A guide to modern exploit development, shellcode, EDR and WAF bypass, and initial Red Team access.☆34Mar 6, 2026Updated 5 months ago
- Collection of many ldap bofs for domain enumeration and privilege escalation. Created for use with the Adaptix C2.☆102Dec 15, 2025Updated 7 months ago
- ☆16Jul 20, 2026Updated 3 weeks ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- AI-driven automated threat analysis pipeline that routes files, URLs, IPs, domains, or images through specialized security analyzers and …☆16Mar 9, 2026Updated 5 months ago
- This repo hosts links to blogs, documentation and assets referenced by the Security Guide Blog.☆11Updated this week
- This repository gathers vetted scripts and snippets across several programming languages for use in penetration testing and Capture the F…☆27Jul 8, 2026Updated last month
- Full write-up for the Active Directory Lab built for Barbhack 2025 by @mpgn and my contributions.☆24Sep 2, 2025Updated 11 months ago
- 在原版nps的基础上,增加了nps探测,以及对应的利用方式(如获取cookie,页面等),进行一些简单的二开 。未经过大量测试,可能存在bug。☆22Aug 5, 2025Updated last year
- Cobalt Strike random C2 Profile generator☆18Jul 16, 2026Updated 3 weeks ago
- A Patchless AMSI Bypass Technique using VEH²☆33Jun 22, 2025Updated last year
- 多人协同信息安全渗透测试报告编写/导出平台☆26Jun 18, 2024Updated 2 years ago
- This is the ringzer0 writeup of web exploitation catagery. The name is "Word mean something"☆14Dec 8, 2023Updated 2 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- ACE Analyzer for identifying ESC1-8 vulnerabilities (Written by AI)☆42Jul 4, 2026Updated last month
- Framework Automatizado de Reconocimiento y Explotación☆17Mar 8, 2026Updated 5 months ago
- One PsExec client to rule them all☆15Mar 25, 2026Updated 4 months ago
- A Python native library containing lots of useful functions to write efficient scripts to hack stuff.☆42Nov 10, 2025Updated 9 months ago
- Apache Superset Auth Bypass (CVE-2023-27524)☆11May 9, 2023Updated 3 years ago
- ☆59Jul 8, 2025Updated last year
- ☆11Aug 31, 2023Updated 2 years ago
- Kassandra is a custom Mythic C2 agent written in Rust, containerized via a Python-based builder☆18Jul 31, 2026Updated last week
- DevSecOps for the AI-era CI/CD pipeline. Catches the bugs your AI coding assistant introduces — before they reach production.☆20Jul 14, 2026Updated 3 weeks ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- 「💉」XSS Payload List☆46Feb 26, 2023Updated 3 years ago
- The NeoC2 Framework☆34Jul 4, 2026Updated last month
- ManageEngine ADManager Command Injection☆11Oct 2, 2023Updated 2 years ago
- A python tool(automation) for automatically finding SSH servers on the network and adding them to the botnet for mass administration and …☆40Nov 12, 2023Updated 2 years ago
- A small example of loading BOFs in Python with pure reflection☆19Jan 26, 2023Updated 3 years ago
- Red Team Techniques & TTPs: AD, C2, SCADA, PrivEsc, Web Hacking, Buffer Overflow, WiFi.☆18Updated this week
- 读取dump向日葵&Todesk进程的文件获得连接信息☆16Sep 27, 2024Updated last year
- Description and exploit of CVE-2023-33831 affecting FUXA web-based Process Visualization (SCADA/HMI/Dashboard) software.☆13Oct 27, 2024Updated last year
- 🐐 GoatOS - A lightweight Linux distribution focused on Web & API penetration testing. Built on Debian with GNOME, featuring nuclei, http…☆18Dec 26, 2025Updated 7 months ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Files for http://blog.deniable.org/posts/windows-callbacks/☆12Jan 1, 2023Updated 3 years ago
- 渗透测试有关的POC、EXP、脚本、提权、小工具等---About penetration-testing python-script poc getshell csrf xss cms php-getshell domainmod-xss csrf-webshell co…☆11Oct 18, 2023Updated 2 years ago
- A blue team tool to help audit kerberoasting vulnerability status☆23Jan 31, 2026Updated 6 months ago
- Trustzone Exploit that allows running code in secure mode on Surface RT (Tegra 3) with the help of Yahallo (by imbushuo)☆11Mar 30, 2023Updated 3 years ago
- Golang Automation Framework for Cobalt Strike using the Rest API☆60Apr 10, 2026Updated 4 months ago
- Group Policy Objects manipulation and exploitation framework☆317Dec 7, 2025Updated 8 months ago
- AD CS exploitation related stuff goes here☆25Mar 23, 2026Updated 4 months ago