nccgroup / whalescanLinks
Whalescan is a vulnerability scanner for Windows containers, which performs several benchmark checks, as well as checking for CVEs/vulnerable packages on the container
☆156Updated 2 years ago
Alternatives and similar repositories for whalescan
Users that are interested in whalescan are comparing it to the libraries listed below
Sorting:
- A Docker container for remote penetration testing.☆141Updated 4 years ago
- SNIcat☆128Updated 4 years ago
- automated password spraying tool☆147Updated 4 years ago
- Programmatically create hunting rules for deserialization exploitation with multiple keywords, gadget chains, object types, encodings, an…☆144Updated 2 years ago
- Network assessment tool for various UDP Services covering both IPv4 and IPv6 protocols☆116Updated 5 years ago
- Script to export Nessus results to a relational database for use in reports, analysis, or whatever else.☆70Updated 8 months ago
- nse script to inject jndi payloads☆45Updated 4 years ago
- ☆139Updated 2 years ago
- Terraform resources for building HTTP, DNS, phishing, and mail server red team infrastructure☆95Updated 6 years ago
- ☆70Updated 2 years ago
- Monitoring GitHub for sensitive data shared publicly☆66Updated 4 years ago
- Repository of resources for configuring a Red Team SIEM using Elastic☆101Updated 7 years ago
- Script samples from the book Pentesting Azure Applications (2018, No Starch Press)☆88Updated 6 years ago
- Fast offline auditing of Active Directory passwords using Python.☆165Updated last year
- ☆69Updated 4 years ago
- A bash script that automates the exfiltration of data over dns in case we have blind command execution on a server with egress filtering☆210Updated 5 years ago
- Bento Toolkit is a minimal fedora-based container for penetration tests and CTF with the sweet addition of GUI applications.☆76Updated 5 years ago
- Resources for our Active Directory security workshops☆140Updated 4 years ago
- Active Directory Lab for Penetration Testing☆53Updated 5 months ago
- Tool for assessing on-premises Microsoft servers authentication such as ADFS, Skype, Exchange, and RDWeb☆149Updated 5 years ago
- Microsoft Azure Exploitation Framework☆59Updated 4 years ago
- GoldenSAML Attack Libraries and Framework☆77Updated last year
- ☆36Updated 5 years ago
- Hayat is a script for report and analyze Google Cloud Platform resources.☆81Updated 5 years ago
- Scan your EC2 instance to find its vulnerabilities using Vuls (https://vuls.io/en/)☆89Updated 3 years ago
- Virtual Security Operations Center☆52Updated 2 years ago
- ☆167Updated 5 years ago
- Parse .nessus file(s) and shows output in interactive UI☆162Updated 2 weeks ago
- Boomerang is a tool to expose multiple internal servers to web/cloud. Agent & Server are pretty stable and can be used in Red Team for Mu…☆226Updated 4 years ago
- PacketSifter is a tool/script that is designed to aid analysts in sifting through a packet capture (pcap) to find noteworthy traffic. Pac…☆95Updated 4 years ago