MrW0l05zyn / pentestingLinks
Herramientas y utilidades de pentesting, ethical hacking y seguridad ofensiva.
☆39Updated 5 months ago
Alternatives and similar repositories for pentesting
Users that are interested in pentesting are comparing it to the libraries listed below
Sorting:
- SSTI Payload Generator☆92Updated 3 years ago
- Python tool for enumerating directories and files on web servers that contain a publicly readable .ds_store file.☆66Updated 4 years ago
- Ad hoc collection of Red Teaming & Active Directory tooling.☆222Updated 2 years ago
- Ghostscript command injection vulnerability PoC (CVE-2023-36664)☆127Updated 2 years ago
- Exploit for CVE-2021-3129☆68Updated 4 years ago
- Aspx reverse shell☆118Updated 5 years ago
- RCE exploit for dompdf☆183Updated 3 years ago
- Enumerate / Dump Docker Registry☆180Updated last year
- Collection of username lists for enumerating kerberos domain users☆103Updated 7 years ago
- Python exploit code for CVE-2021-4034 (pwnkit)☆171Updated 3 years ago
- Multi-threaded, IPv6 aware, wordlists/single-user username enumeration via CVE-2018-15473☆109Updated last year
- Gitbook: OSCP-Jewels☆12Updated 4 years ago
- ☆37Updated 2 years ago
- SMTP user enumeration via VRFY, EXPN and RCPT with clever timeout, retry and reconnect functionality.☆157Updated last year
- A simple NodeJS WebSocket WebApp vulnerable to blind SQL injection☆70Updated 4 years ago
- This repo is a PoC with to exploit CVE-2023-51467 and CVE-2023-49070 preauth RCE vulnerabilities found in Apache OFBiz.☆74Updated last year
- Python3 script to quickly get various information from a domain controller through his LDAP service.☆278Updated 11 months ago
- Openfire Console Authentication Bypass Vulnerability with RCE plugin☆55Updated last year
- Privilege escalation with polkit - CVE-2021-3560☆122Updated 4 years ago
- Dockerized labs For Web Expert (OSWE) certification. Preparation for coming AWAE Training ...☆116Updated 4 years ago
- CVE Collection of jQuery UI XSS Payloads☆118Updated 2 years ago
- Achieving a Reverse Shell Exploit for Apache ActiveMQ (CVE_2023-46604)☆120Updated last year
- Local File Inclusion discovery and exploitation tool☆330Updated 10 months ago
- Kraken, a modular multi-language webshell coded by @secu_x11☆550Updated last year
- Umbraco CMS 7.12.4 - (Authenticated) Remote Code Execution☆19Updated 2 years ago
- A webshell application and interactive shell for pentesting Apache Tomcat servers.☆123Updated 9 months ago
- IOXIDResolver.py from AirBus Security☆262Updated 2 years ago
- MS17-010_CVE-2017-0143☆37Updated 5 months ago
- Joomla! < 4.2.8 - Unauthenticated information disclosure☆90Updated last year
- This Burp Suite extension allows for the automatic creation and deletion of an upstream SOCKS5 proxy on popular cloud services.☆244Updated 7 months ago