Audit and pentest methodologies for Linux including internal enumeration, privesc, lateral movement, etc.
☆18Apr 3, 2026Updated 4 months ago
Alternatives and similar repositories for Linux-Exploitation
Users that are interested in Linux-Exploitation are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- WannaCry_HTA 是一个基于 HTA(HTML Application)技术开发的高度仿真 WannaCry 勒索病毒界面模拟程序。该项目简单、完全可控,专为安全研究、应急演练和安全教育场景设计。界面UI参考zR00t1师傅项目编写。☆24Aug 13, 2025Updated last year
- ☆19May 3, 2024Updated 2 years ago
- Collection of many ldap bofs for domain enumeration and privilege escalation. Created for use with the Adaptix C2.☆103Dec 15, 2025Updated 8 months ago
- ☆16Aug 17, 2026Updated last week
- AI-driven automated threat analysis pipeline that routes files, URLs, IPs, domains, or images through specialized security analyzers and …☆16Mar 9, 2026Updated 5 months ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- This repo hosts links to blogs, documentation and assets referenced by the Security Guide Blog.☆11Updated this week
- Full write-up for the Active Directory Lab built for Barbhack 2025 by @mpgn and my contributions.☆24Sep 2, 2025Updated 11 months ago
- This repository gathers vetted scripts and snippets across several programming languages for use in penetration testing and Capture the F…☆27Jul 8, 2026Updated last month
- 在原版nps的基础上,增加了nps探测,以及对应的利用方式(如获取cookie,页面等),进行一些简单的二开。未经过大量测试,可能存在bug。☆22Aug 5, 2025Updated last year
- A Patchless AMSI Bypass Technique using VEH²☆33Jun 22, 2025Updated last year
- Cobalt Strike random C2 Profile generator☆18Jul 16, 2026Updated last month
- 多人协同信息安全渗透测试报告编写/导出平台☆26Jun 18, 2024Updated 2 years ago
- This is the ringzer0 writeup of web exploitation catagery. The name is "Word mean something"☆14Dec 8, 2023Updated 2 years ago
- ACE Analyzer for identifying ESC1-8 vulnerabilities (Written by AI)☆42Jul 4, 2026Updated last month
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Framework Automatizado de Reconocimiento y Explotación☆16Mar 8, 2026Updated 5 months ago
- One PsExec client to rule them all☆15Mar 25, 2026Updated 5 months ago
- A Python native library containing lots of useful functions to write efficient scripts to hack stuff.☆42Nov 10, 2025Updated 9 months ago
- Apache Superset Auth Bypass (CVE-2023-27524)☆11May 9, 2023Updated 3 years ago
- Kassandra is a custom Mythic C2 agent written in Rust, containerized via a Python-based builder☆24Jul 31, 2026Updated 3 weeks ago
- Detect and fix semantic traps in Claude Skills that cause LLM hallucinations☆26Mar 8, 2026Updated 5 months ago
- DevSecOps for the AI-era CI/CD pipeline. Catches the bugs your AI coding assistant introduces — before they reach production.☆20Jul 14, 2026Updated last month
- ManageEngine ADManager Command Injection☆11Oct 2, 2023Updated 2 years ago
- A Qemu Proxmox Template builder project using Packer☆75Dec 5, 2025Updated 8 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A python tool(automation) for automatically finding SSH servers on the network and adding them to the botnet for mass administration and …☆40Nov 12, 2023Updated 2 years ago
- Red Team Techniques & TTPs: AD, C2, SCADA, PrivEsc, Web Hacking, Buffer Overflow, WiFi.☆18Updated this week
- 手机号字典生成器V1.3 是一个本地离线工具,可按城市与运营商批量生成手机号字典,并支持单号/批量归属地查询。项目基于本地号段库运行,不依赖在线接口,支持随机或顺序生成、结果排序导出、批量查询文件输入与一键复用上次配置。☆13Apr 9, 2026Updated 4 months ago
- Description and exploit of CVE-2023-33831 affecting FUXA web-based Process Visualization (SCADA/HMI/Dashboard) software.☆13Oct 27, 2024Updated last year
- 🐐 GoatOS - A lightweight Linux distribution focused on Web & API penetration testing. Built on Debian with GNOME, featuring nuclei, http…☆18Dec 26, 2025Updated 8 months ago
- Files for http://blog.deniable.org/posts/windows-callbacks/☆12Jan 1, 2023Updated 3 years ago
- 渗透测试有关的POC、EXP、脚本、提权、小工具等---About penetration-testing python-script poc getshell csrf xss cms php-getshell domainmod-xss csrf-webshell co…☆11Oct 18, 2023Updated 2 years ago
- A blue team tool to help audit kerberoasting vulnerability status☆23Jan 31, 2026Updated 6 months ago
- Group Policy Objects manipulation and exploitation framework☆319Updated this week
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Golang Automation Framework for Cobalt Strike using the Rest API☆60Apr 10, 2026Updated 4 months ago
- AD CS exploitation related stuff goes here☆25Mar 23, 2026Updated 5 months ago
- There were no proper POCs for CVE-2023-30533 so I made one. (Reported by Vsevolod Kokorin)☆12Aug 9, 2023Updated 3 years ago
- ☆14Apr 29, 2019Updated 7 years ago
- CVE-2022-46463 harbor公开镜像全自动下载脚本☆15Dec 23, 2024Updated last year
- Simple CVE-2021-20294 poc☆11Jan 21, 2023Updated 3 years ago
- This repository contains a Proof of Concept (PoC) exploit for CVE-2024-11680, a critical vulnerability in ProjectSend r1605 and older ver…☆12Jan 31, 2025Updated last year