ally-petitt / OSCP-cheatsheetLinks
These are some of the notes that I created on my OSCP journey. I hope that you learn something new from them
☆15Updated 2 years ago
Alternatives and similar repositories for OSCP-cheatsheet
Users that are interested in OSCP-cheatsheet are comparing it to the libraries listed below
Sorting:
- A tool that automates the search for IDOR vulnerabilities in web apps and APIs☆61Updated 4 years ago
- ☆66Updated 5 months ago
- Web application with vulnerabilities found in real cases, both in pentests and in Bug Bounty programs.☆168Updated last year
- CVEs and Techniques used PDF as an attack vector.☆91Updated 3 years ago
- ☆62Updated last year
- CVE-2025-29927 Proof of Concept☆80Updated 3 months ago
- My Linux Privilege Escalation notes which is part of my OSCP Preperation☆76Updated 2 years ago
- ☆69Updated 3 years ago
- ☆95Updated 4 months ago
- Write-ups / walkthroughs of 'boot to root' Capture The Flag (CTF) challenges☆46Updated 2 years ago
- PoC for CVE-2022-46169 - Unauthenticated RCE on Cacti <= 1.2.22☆30Updated 2 years ago
- Config files for my GitHub profile.☆28Updated 2 years ago
- This repository is used to store answers when resolving ctf challanges, how i came to that answer and the line of thought used to reach i…☆88Updated 3 years ago
- PHP 8.1.0-dev Backdoor System Shell Script☆92Updated 4 years ago
- Notes and cheatsheets for the OffSec Wireless Professional (OSWP) certification☆38Updated last year
- A collection of useful lists for Penetration Testing & Bug Bounty - Content Discovery, Payloads, Variables, Sandbox Escaping, etc☆103Updated 4 months ago
- ☆90Updated 3 years ago
- CVE-2024-27956 WordPress Automatic < 3.92.1 - Unauthenticated SQL Injection☆18Updated last year
- ☆45Updated 5 months ago
- My handbook for Windows Privilege Escalation concepts. Do Check out my Playlist, link: https://www.youtube.com/playlist?list=PLlrnAg4kKF3…☆50Updated 3 years ago
- A Complete SSRF (Server Side Request Forgery) Scanner.☆37Updated 5 months ago
- A command injection vulnerability in web components of Ivanti Connect Secure (9.x, 22.x) and Ivanti Policy Secure (9.x, 22.x) allows an a…☆55Updated last year
- Hi everyone,☆59Updated 2 years ago
- Notes from various sources for preparing to take the OSCP, Capture the Flag challenges, and Hack the Box machines.☆83Updated last month
- CVE Collection of jQuery UI XSS Payloads☆119Updated 2 years ago
- 🤖 LLM-powered agent for automated Google Dorking in bug hunting & pentesting.☆58Updated 2 months ago
- CVE-2025-24016: RCE in Wazuh server! Remote Code Execution☆54Updated 4 months ago
- A repository to host the subdomain wordlists from my blog https://medium.com/@nynan/what-i-learnt-from-reading-217-subdomain-takeover-bug…☆40Updated 2 years ago
- A list of hacking/security resources that are focused on IoT☆61Updated 2 years ago
- MobSF Remote code execution (via CVE-2024-21633)☆80Updated last year