nccgroup / whalescanLinks
Whalescan is a vulnerability scanner for Windows containers, which performs several benchmark checks, as well as checking for CVEs/vulnerable packages on the container
☆155Updated 2 years ago
Alternatives and similar repositories for whalescan
Users that are interested in whalescan are comparing it to the libraries listed below
Sorting:
- A Docker container for remote penetration testing.☆141Updated 4 years ago
- Programmatically create hunting rules for deserialization exploitation with multiple keywords, gadget chains, object types, encodings, an…☆144Updated 2 years ago
- SNIcat☆128Updated 4 years ago
- nse script to inject jndi payloads☆46Updated 3 years ago
- automated password spraying tool☆147Updated 4 years ago
- Network assessment tool for various UDP Services covering both IPv4 and IPv6 protocols☆115Updated 5 years ago
- ☆70Updated 2 years ago
- Script to export Nessus results to a relational database for use in reports, analysis, or whatever else.☆70Updated 6 months ago
- A bash script that automates the exfiltration of data over dns in case we have blind command execution on a server with egress filtering☆210Updated 4 years ago
- d(ockerp)wn - a docker pwn tool manager☆156Updated 4 years ago
- Bento Toolkit is a minimal fedora-based container for penetration tests and CTF with the sweet addition of GUI applications.☆78Updated 4 years ago
- Identify IP addresses owned by public cloud providers☆126Updated last year
- Fast offline auditing of Active Directory passwords using Python.☆165Updated last year
- Monitoring GitHub for sensitive data shared publicly☆66Updated 3 years ago
- Terraform resources for building HTTP, DNS, phishing, and mail server red team infrastructure☆95Updated 6 years ago
- Scan your EC2 instance to find its vulnerabilities using Vuls (https://vuls.io/en/)☆89Updated 2 years ago
- Boomerang is a tool to expose multiple internal servers to web/cloud. Agent & Server are pretty stable and can be used in Red Team for Mu…☆225Updated 4 years ago
- Resources for our Active Directory security workshops☆140Updated 4 years ago
- Malicious actors often reuse code to deploy their malware, phishing website or CNC server. As a result, similiaries can be found on URLs …☆75Updated 2 years ago
- ☆139Updated 2 years ago
- LLMNR/NBNS/mDNS Spoofing Detection Toolkit☆59Updated 3 years ago
- Microsoft Azure Exploitation Framework☆59Updated 4 years ago
- Active Directory Lab for Penetration Testing☆52Updated 3 months ago
- Whitebox evaluation of effective S3 object permissions, to identify publicly accessible files.☆78Updated 3 years ago
- Script samples from the book Pentesting Azure Applications (2018, No Starch Press)☆88Updated 6 years ago
- Static Token And Credential Scanner☆95Updated 2 years ago
- Tool to discover external and internal network attack surface☆203Updated last year
- A cloud-backed password cracking and assessment tool - Sponsored by Open Security☆70Updated 2 years ago
- Slackhound allows red and blue teams to perform fast reconnaissance on Slack workspaces/organizations to quickly search user profiles, lo…☆83Updated 2 months ago
- ☆69Updated 4 years ago