An in-depth guide to help people who are new to penetration testing or red teaming and are looking to gain an overview of the penetration testing process. This guide will focus on both the penetration testing and red team process and contain detailed information.
☆172Jan 7, 2025Updated last year
Alternatives and similar repositories for Penetration-Testing-Cheat-Sheet
Users that are interested in Penetration-Testing-Cheat-Sheet are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Ethical Remote Acces Tool Client and Server for W10 and Linux Persist functionality☆49Feb 12, 2023Updated 3 years ago
- WebDirScan is a tool for brute-forcing URIs (directories and files) on web servers by taking input directory to scan for files & director…☆11Mar 31, 2023Updated 3 years ago
- quick and dirty proof-of-concept to hide shells in images☆51Jun 27, 2024Updated 2 years ago
- SidePeek.js is a curated set of JavaScript payloads for browser-based recon. Run them in DevTools or as bookmarklets to uncover hidden AP…☆22May 13, 2025Updated last year
- A Red Teaming tool focused on profiling the target.☆29Jan 10, 2026Updated 6 months ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- ☆32Mar 21, 2023Updated 3 years ago
- A curated list wordlists for bruteforcing and fuzzing☆86Apr 3, 2023Updated 3 years ago
- This is a fully automated Active directory Lab made with the purpose to reduce the hustle of creating it manually.☆104Aug 14, 2025Updated 11 months ago
- HaxorHandbook is the ultimate cheat sheet for cybersecurity enthusiasts looking to up their game. Our comprehensive guide includes must-h…☆83Mar 8, 2024Updated 2 years ago
- This is a Burp Suite extension that allows users to easily add web addresses to the Burp Suite scope.☆97Jan 2, 2025Updated last year
- backdoor exploit for vsftpd 2.3.4 on python☆15Oct 14, 2023Updated 2 years ago
- PowerSploit - A PowerShell Post-Exploitation Framework☆22Jun 11, 2022Updated 4 years ago
- A RedTeam Toolkit☆408Aug 14, 2025Updated 11 months ago
- Ansible + Vagrant + Hyper-V + Vulnerable AD 😎☆92Jul 14, 2026Updated last week
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- Searches for employees of a company on linkedin, generates a list of possible emails and verifies them.☆50Sep 30, 2024Updated last year
- Work in progress...☆483Apr 18, 2026Updated 3 months ago
- [BASH] Bounty Meter is a command-line utility tool designed for bug bounty hunters to define their bounty target for a year, maintain and…☆32Jul 21, 2023Updated 3 years ago
- Command & Control-Framework created for collaboration in python3☆325May 22, 2026Updated last month
- GTFOArgs is a curated list of programs and their associated arguments that can be exploited to gain privileged access or execute arbitrar…☆144Mar 24, 2026Updated 3 months ago
- Protect your personal information from hackers and cyber criminals with HackAlert. Our product scans the internet for your online persona…☆18Oct 16, 2024Updated last year
- Create a vulnerable active directory that's allowing you to test most of the active directory attacks in a local lab☆2,319Apr 12, 2024Updated 2 years ago
- Fast Search including Dark Web Search☆133Oct 19, 2022Updated 3 years ago
- Este proyecto implementa una reverse shell que utiliza el protocolo DNS☆15Jun 20, 2025Updated last year
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Remote persistent 🔑Logger for Windows and Linux☆295Apr 21, 2023Updated 3 years ago
- ☆20Jul 7, 2024Updated 2 years ago
- ☆92Aug 5, 2023Updated 2 years ago
- "XSS automation tool helps hackers identify and exploit cross-site scripting vulnerabilities in web apps. Tests for reflected and persist…☆91Jul 26, 2024Updated last year
- An offensive security tool used to enumerate and spray passwords for O365 accounts on both Managed and Federated AD services.☆49Nov 17, 2022Updated 3 years ago
- Web Hacking and Red Teaming MindMap☆81Dec 24, 2025Updated 6 months ago
- Giga-byte Control Center (GCC) is a software package designed for improved user experience of Gigabyte hardware, often found in gaming an…☆35Feb 2, 2026Updated 5 months ago
- A compilation of important commands, files, and tools used in Pentesting☆56Jan 17, 2023Updated 3 years ago
- Automate Scoping, OSINT and Recon assessments.☆116Feb 3, 2026Updated 5 months ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- How to intercept network trafic on Android☆231May 22, 2024Updated 2 years ago
- Maltego Transforms for generating screenshots from Websites and URLs☆16Apr 24, 2023Updated 3 years ago
- Hacking tool for enumeration and automated attacking. Port Scanner, Automatic SSH brute, DNS queries, IP and phonenumber geolocation☆14May 25, 2023Updated 3 years ago
- Hide an IP address in scripts using hex/decimal/octal conversions☆74Apr 6, 2025Updated last year
- Uses rpcdump to locate the ADCS server, and identify if ESC8 is vulnerable from unauthenticated perspective.☆84Sep 13, 2024Updated last year
- Cheat-Sheet of tools for penetration testing☆53May 23, 2023Updated 3 years ago
- Just some random Red Team Scripts that can be useful☆154May 12, 2026Updated 2 months ago