cisagov / pen-testing-findingsLinks
A collection of Active Directory, phishing, mobile technology, system, service, web application, and wireless technology weaknesses that may be discovered during a penetration test.
☆256Updated 3 years ago
Alternatives and similar repositories for pen-testing-findings
Users that are interested in pen-testing-findings are comparing it to the libraries listed below
Sorting:
- ☆244Updated last year
- Find CVEs associated to Linux and public exploits on github☆119Updated 9 months ago
- A collection of companies that disclose adversary TTPs after they have been breached☆289Updated 2 months ago
- This Repo serves as a collection of shared security and penetration testing resources for the cloud.☆290Updated last year
- This is a RSS feed collection for all the InfoSec Content Creators☆33Updated 2 years ago
- ☆133Updated last month
- This repo contains my pentesting template that I have used in PWK and for current assessments. The template has been formatted to be used…☆237Updated last year
- ☆68Updated 3 years ago
- List of tools and resources for pentesting Microsoft Active Directory☆114Updated 7 months ago
- An open-source self-hosted purple team management web application.☆300Updated last week
- autoNTDS is an automation script designed to simplify the process of dumping and cracking NTDS hashes using secretsdump.py and hashcat☆110Updated 2 years ago
- Repository with some necessary information for you to create your PenTest consultancy☆101Updated last year
- A curated list of cloud pentesting resource, contains AWS, Azure, Google Cloud☆141Updated 3 years ago
- Domain_checker application is the trial/demo version for the new EASM (External Attack Surface Management) system called HydrAttack (hydr…☆189Updated last year
- Completely Risky Active-Directory Simulation Hub☆102Updated 2 years ago
- Certainly is a offensive security toolkit to capture large amounts of traffic in various network protocols in bitflip and typosquat scena…☆223Updated last year
- This repo contains IOC, malware and malware analysis associated with Public cloud☆249Updated last year
- Halberd : Multi-Cloud Agentic Attack Tool☆331Updated 3 weeks ago
- Dredging up secrets from the depths of the file system☆132Updated last year
- Offensive security and Penetration Testing TTP for Cloud based environment (AWS / Azure / GCP)☆344Updated 11 months ago
- Websec interview questions by tib3rius answered☆308Updated 2 years ago
- An automated Adversary Emulation lab with terraform and MCP server. Build Caldera techniques and operations assisted with LLMs. Built f…☆204Updated 2 months ago
- A simple Bash script to automate some organization and repetitive tasks while doing TryHackMe or HackTheBox machines☆38Updated 2 years ago
- OSCP preparation tools, scripts and cheatsheets☆60Updated 3 years ago
- ☆238Updated 4 years ago
- list of useful commands, shells and notes related to OSCP☆79Updated 7 years ago
- This OSINT Notebook provides an overview of the tools, techniques, and resources that I use for a variety of situations when it comes to …☆359Updated last year
- AD Lab Setup Scripts☆80Updated 8 months ago
- ☆176Updated 2 years ago
- Vulnerability scanner for AWS customer managed policies using ChatGPT☆167Updated 2 years ago