nccgroup / whalescanLinks
Whalescan is a vulnerability scanner for Windows containers, which performs several benchmark checks, as well as checking for CVEs/vulnerable packages on the container
☆156Updated 2 years ago
Alternatives and similar repositories for whalescan
Users that are interested in whalescan are comparing it to the libraries listed below
Sorting:
- SNIcat☆128Updated 4 years ago
- A Docker container for remote penetration testing.☆141Updated 4 years ago
- automated password spraying tool☆147Updated 4 years ago
- Script to export Nessus results to a relational database for use in reports, analysis, or whatever else.☆70Updated 6 months ago
- Terraform resources for building HTTP, DNS, phishing, and mail server red team infrastructure☆95Updated 6 years ago
- ☆69Updated 4 years ago
- Programmatically create hunting rules for deserialization exploitation with multiple keywords, gadget chains, object types, encodings, an…☆144Updated 2 years ago
- nse script to inject jndi payloads☆46Updated 3 years ago
- Network assessment tool for various UDP Services covering both IPv4 and IPv6 protocols☆116Updated 5 years ago
- Fast offline auditing of Active Directory passwords using Python.☆165Updated last year
- Repository of resources for configuring a Red Team SIEM using Elastic☆102Updated 7 years ago
- Resources for our Active Directory security workshops☆140Updated 4 years ago
- A bash script that automates the exfiltration of data over dns in case we have blind command execution on a server with egress filtering☆210Updated 4 years ago
- Boomerang is a tool to expose multiple internal servers to web/cloud. Agent & Server are pretty stable and can be used in Red Team for Mu…☆225Updated 4 years ago
- ☆139Updated 2 years ago
- Tool for assessing on-premises Microsoft servers authentication such as ADFS, Skype, Exchange, and RDWeb☆149Updated 4 years ago
- Tool to discover external and internal network attack surface☆204Updated last year
- Bento Toolkit is a minimal fedora-based container for penetration tests and CTF with the sweet addition of GUI applications.☆78Updated 4 years ago
- Hayat is a script for report and analyze Google Cloud Platform resources.☆81Updated 5 years ago
- A simple python tool based on Impacket that tests servers for various known NTLM vulnerabilities☆204Updated 5 years ago
- PatrowlHears - Vulnerability Intelligence Center / Exploits☆165Updated last week
- Active Directory Lab for Penetration Testing☆52Updated 4 months ago
- Malicious actors often reuse code to deploy their malware, phishing website or CNC server. As a result, similiaries can be found on URLs …☆75Updated 2 years ago
- d(ockerp)wn - a docker pwn tool manager☆156Updated 4 years ago
- Monitoring GitHub for sensitive data shared publicly☆66Updated 3 years ago
- ☆36Updated 5 years ago
- Cloud Security Operations Orchestrator☆188Updated last year
- Script samples from the book Pentesting Azure Applications (2018, No Starch Press)☆88Updated 6 years ago
- Deploy a small, intentionally insecure, vulnerable Windows Domain for RDP Honeypot fully automatically.☆258Updated 3 years ago
- Identify IP addresses owned by public cloud providers☆127Updated last year