MrW0l05zyn / pentesting
Herramientas y utilidades de pentesting, ethical hacking y seguridad ofensiva.
☆37Updated last week
Alternatives and similar repositories for pentesting
Users that are interested in pentesting are comparing it to the libraries listed below
Sorting:
- SSTI Payload Generator☆90Updated 2 years ago
- A simple NodeJS WebSocket WebApp vulnerable to blind SQL injection☆70Updated 4 years ago
- Aspx reverse shell☆106Updated 5 years ago
- Python tool for enumerating directories and files on web servers that contain a publicly readable .ds_store file.☆59Updated 3 years ago
- CVE Collection of jQuery UI XSS Payloads☆119Updated 2 years ago
- Ghostscript command injection vulnerability PoC (CVE-2023-36664)☆124Updated last year
- Root shell PoC for CVE-2021-3156☆66Updated 4 years ago
- The Template Injection Table is intended to help during the testing of an application for template injection vulnerabilities.☆84Updated this week
- Collection of username lists for enumerating kerberos domain users☆91Updated 7 years ago
- Exploit for CVE-2021-3129☆65Updated 4 years ago
- Ad hoc collection of Red Teaming & Active Directory tooling.☆201Updated last year
- Enumerate / Dump Docker Registry☆175Updated last year
- Achieving a Reverse Shell Exploit for Apache ActiveMQ (CVE_2023-46604)☆114Updated last year
- Privilege escalation with polkit - CVE-2021-3560☆120Updated 3 years ago
- Gitbook: OSCP-Jewels☆12Updated 3 years ago
- Red Teaming and Penetration Testing Checklist, Cheatsheet, Clickscript☆86Updated last year
- A comprehensive guide/material for anyone looking to get into infosec or take the OSCP exam☆44Updated 6 years ago
- OpenSSH 2.3 < 7.7 - Username Enumeration☆42Updated last year
- Proof of Concept for CVE-2021-34473, CVE-2021-34523, and CVE-2021-31207☆112Updated last year
- Multi-threaded, IPv6 aware, wordlists/single-user username enumeration via CVE-2018-15473☆108Updated last year
- Custom scan profiles for use with Burp Suite Pro☆143Updated last year
- Openfire Console Authentication Bypass Vulnerability with RCE plugin☆51Updated last year
- phpMyAdmin XSS☆116Updated 6 months ago
- All Type of Payloads☆136Updated last year
- RCE exploit for dompdf☆177Updated 3 years ago
- ☆32Updated last year
- Mining URLs from dark corners of Web Archives for bug hunting/fuzzing/further probing☆144Updated 2 months ago
- Dockerized labs For Web Expert (OSWE) certification. Preparation for coming AWAE Training ...☆105Updated 3 years ago
- This tool is for letting you know how strong your disable_functions is and how you can bypass that.☆128Updated 5 years ago
- Old version of mimikatz for OSCP labs☆17Updated 4 years ago