cisagov / pen-testing-findingsLinks
A collection of Active Directory, phishing, mobile technology, system, service, web application, and wireless technology weaknesses that may be discovered during a penetration test.
☆254Updated 3 years ago
Alternatives and similar repositories for pen-testing-findings
Users that are interested in pen-testing-findings are comparing it to the libraries listed below
Sorting:
- ☆243Updated 9 months ago
- Find CVEs associated to Linux and public exploits on github☆119Updated 7 months ago
- This is a RSS feed collection for all the InfoSec Content Creators☆32Updated 2 years ago
- List of tools and resources for pentesting Microsoft Active Directory☆102Updated 4 months ago
- autoNTDS is an automation script designed to simplify the process of dumping and cracking NTDS hashes using secretsdump.py and hashcat☆108Updated 2 years ago
- ☆173Updated 2 years ago
- Domain_checker application is the trial/demo version for the new EASM (External Attack Surface Management) system called HydrAttack (hydr…☆188Updated last year
- This Repo serves as a collection of shared security and penetration testing resources for the cloud.☆285Updated last year
- This repo contains my pentesting template that I have used in PWK and for current assessments. The template has been formatted to be used…☆225Updated 11 months ago
- A collection of companies that disclose adversary TTPs after they have been breached☆286Updated 2 weeks ago
- Pwnspoof repository☆264Updated 2 years ago
- Dredging up secrets from the depths of the file system☆130Updated last year
- A curated list of cloud pentesting resource, contains AWS, Azure, Google Cloud☆135Updated 3 years ago
- Repository with some necessary information for you to create your PenTest consultancy☆100Updated 10 months ago
- A PlayBook for OSWP & Wireless Pentest☆41Updated last year
- This repo contains IOC, malware and malware analysis associated with Public cloud☆249Updated last year
- Halberd : Multi-Cloud Agentic Attack Tool☆321Updated this week
- Offensive security and Penetration Testing TTP for Cloud based environment (AWS / Azure / GCP)☆343Updated 8 months ago
- Websec interview questions by tib3rius answered☆310Updated 2 years ago
- A tool to keep AWS pentests and red teams efficient, organized, and stealthy.☆96Updated last year
- An open-source self-hosted purple team management web application.☆292Updated last month
- Welcome to Project KillChain, a comprehensive GitHub repository for Red and Blue Teams. This repository houses tools, scripts, technique…☆109Updated last year
- GCPGoat : A Damn Vulnerable GCP Infrastructure☆417Updated last year
- LOLAPPS is a compendium of applications that can be used to carry out day-to-day exploitation.☆191Updated 8 months ago
- Completely Risky Active-Directory Simulation Hub☆103Updated last year
- ☆67Updated 3 years ago
- ☆190Updated 6 months ago
- CSbyGB PenTips Gitbook☆114Updated 3 weeks ago
- Active Directory Generator files for Movement, Pivoting, and Persistence for Pentesters and Ethical Hackers.☆215Updated 2 years ago
- An automated Breach and Attack Simulation lab with terraform. Built for IaC stability, consistency, and speed.☆199Updated last year