cisagov / pen-testing-findings
A collection of Active Directory, phishing, mobile technology, system, service, web application, and wireless technology weaknesses that may be discovered during a penetration test.
☆237Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for pen-testing-findings
- ☆216Updated last year
- A collection of companies that disclose adversary TTPs after they have been breached☆239Updated 6 months ago
- Find CVEs associated to Linux and public exploits on github☆111Updated 9 months ago
- Certainly is a offensive security toolkit to capture large amounts of traffic in various network protocols in bitflip and typosquat scena…☆131Updated 2 months ago
- Offensive security and Penetration Testing TTP for Cloud based environment (AWS / Azure / GCP)☆315Updated 2 weeks ago
- Active Directory Generator files for Movement, Pivoting, and Persistence for Pentesters and Ethical Hackers.☆205Updated last year
- Websec interview questions by tib3rius answered☆301Updated 11 months ago
- This repo contains my pentesting template that I have used in PWK and for current assessments. The template has been formatted to be used…☆125Updated 2 months ago
- ☆149Updated 3 years ago
- Repository with some necessary information for you to create your PenTest consultancy☆92Updated 2 years ago
- This is a RSS feed collection for all the InfoSec Content Creators☆30Updated last year
- This repo contains IOC, malware and malware analysis associated with Public cloud☆244Updated this week
- A OWASP Based Checklist With 80+ Test Cases☆132Updated 2 years ago
- Completely Risky Active-Directory Simulation Hub☆99Updated 11 months ago
- autoNTDS is an automation script designed to simplify the process of dumping and cracking NTDS hashes using secretsdump.py and hashcat☆108Updated last year
- An automated Breach and Attack Simulation lab with terraform. Built for IaC stability, consistency, and speed.☆165Updated 4 months ago
- Halberd : Multi-Cloud Attack Tool☆193Updated this week
- ☆48Updated last year
- ☆135Updated 3 years ago
- LOLAPPS is a compendium of applications that can be used to carry out day-to-day exploitation.☆171Updated 9 months ago
- ☆442Updated 6 months ago
- An open-source self-hosted purple team management web application.☆241Updated 3 months ago
- Active Directory pentesting mind map☆299Updated last year
- Azure mindmap for penetration tests☆161Updated 11 months ago
- ☆245Updated last year
- This Repo serves as a collection of shared security and penetration testing resources for the cloud.☆229Updated 3 months ago
- A curated list of cloud pentesting resource, contains AWS, Azure, Google Cloud☆95Updated 2 years ago
- Nuclei templates for honeypots detection.☆192Updated last year
- ☆168Updated last year