nccgroup / whalescanLinks
Whalescan is a vulnerability scanner for Windows containers, which performs several benchmark checks, as well as checking for CVEs/vulnerable packages on the container
☆156Updated 2 years ago
Alternatives and similar repositories for whalescan
Users that are interested in whalescan are comparing it to the libraries listed below
Sorting:
- A Docker container for remote penetration testing.☆141Updated 4 years ago
- Script to export Nessus results to a relational database for use in reports, analysis, or whatever else.☆70Updated 9 months ago
- automated password spraying tool☆148Updated 4 years ago
- Programmatically create hunting rules for deserialization exploitation with multiple keywords, gadget chains, object types, encodings, an…☆144Updated 2 years ago
- Network assessment tool for various UDP Services covering both IPv4 and IPv6 protocols☆116Updated 5 years ago
- SNIcat☆128Updated 4 years ago
- nse script to inject jndi payloads☆46Updated 4 years ago
- Boomerang is a tool to expose multiple internal servers to web/cloud. Agent & Server are pretty stable and can be used in Red Team for Mu…☆226Updated 4 years ago
- A bash script that automates the exfiltration of data over dns in case we have blind command execution on a server with egress filtering☆211Updated 5 years ago
- Bento Toolkit is a minimal fedora-based container for penetration tests and CTF with the sweet addition of GUI applications.☆76Updated 5 years ago
- Monitoring GitHub for sensitive data shared publicly☆66Updated 4 years ago
- LLMNR/NBNS/mDNS Spoofing Detection Toolkit☆60Updated 3 years ago
- Scan your EC2 instance to find its vulnerabilities using Vuls (https://vuls.io/en/)☆89Updated 3 years ago
- Terraform resources for building HTTP, DNS, phishing, and mail server red team infrastructure☆95Updated 6 years ago
- ☆35Updated 5 years ago
- Fast offline auditing of Active Directory passwords using Python.☆165Updated last year
- ☆139Updated 2 years ago
- Active Directory Lab for Penetration Testing☆54Updated 6 months ago
- Script samples from the book Pentesting Azure Applications (2018, No Starch Press)☆89Updated 7 years ago
- A cloud-backed password cracking and assessment tool - Sponsored by Open Security☆71Updated 3 years ago
- PatrowlHears - Vulnerability Intelligence Center / Exploits☆166Updated last week
- Hayat is a script for report and analyze Google Cloud Platform resources.☆81Updated 6 years ago
- Tool to discover external and internal network attack surface☆203Updated last year
- Detect webshells dropped on Microsoft Exchange servers exploited through "proxylogon" group of vulnerabilites (CVE-2021-26855, CVE-2021-2…☆99Updated 4 years ago
- Resources for our Active Directory security workshops☆140Updated 4 years ago
- Open source tools, libraries, and datasets related to the runZero product and associated research☆125Updated last week
- ☆127Updated last year
- Deploy a small, intentionally insecure, vulnerable Windows Domain for RDP Honeypot fully automatically.☆258Updated 3 years ago
- Identify IP addresses owned by public cloud providers☆125Updated last year
- Repository of resources for configuring a Red Team SIEM using Elastic☆101Updated 7 years ago