Useful scripts for pen testing. Require modification to run
☆13Oct 17, 2020Updated 5 years ago
Alternatives and similar repositories for pentesting-scripts
Users that are interested in pentesting-scripts are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- LibSSH Authentication Bypass Exploit using RCE☆11Oct 25, 2018Updated 7 years ago
- Exploits a stack buffer overflow in AT-TFTP v1.9, by sending a request (get/write) for an overly long file name.☆11Jun 22, 2015Updated 10 years ago
- ☆25Sep 28, 2020Updated 5 years ago
- https://github.com/timip/OSWE☆19Dec 2, 2019Updated 6 years ago
- Exploit for PlaySMS 1.4 authenticated RCE☆14Nov 6, 2018Updated 7 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- From SQL injection to root shell with CVE-2016-6662 by MaYaSeVeN☆29Jul 22, 2017Updated 8 years ago
- PIC code gen and loading☆13Jul 25, 2017Updated 8 years ago
- A weaponized version of CVE-2018-9206☆62Oct 30, 2018Updated 7 years ago
- It is a simple script to exploit RCE for Samba (CVE-2017-7494 ).☆57Oct 31, 2021Updated 4 years ago
- This is the word list for fuzzing kubernetes.☆15Nov 11, 2023Updated 2 years ago
- Vulnerable Windows 32bit executables for OSCP exam training☆19Dec 12, 2020Updated 5 years ago
- Convert auditd logs to json format☆10Apr 3, 2019Updated 7 years ago
- A cloud automation system for Red Teams based on Terraform and Ansible☆25Apr 21, 2021Updated 5 years ago
- Preparation for OSWE☆47Apr 19, 2020Updated 6 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- AtMail Email Server Appliance 6.4 - Exploit toolchain (XSS > CSRF > RCE)☆11Dec 8, 2022Updated 3 years ago
- Use rpc null sessions to retrieve machine list, domain admin list, domain controllers☆13Dec 15, 2022Updated 3 years ago
- Utility to remove digital code signature from binary PE files in Windows.☆17Apr 25, 2021Updated 5 years ago
- Exploit for Drupal 7 <= 7.57 CVE-2018-7600☆140Apr 26, 2018Updated 8 years ago
- A malicious .cab creation tool for CVE-2021-40444☆13Sep 12, 2021Updated 4 years ago
- A pentesting Firefox spy extension - PoC☆10Jun 16, 2016Updated 9 years ago
- Vulnerability research on the CA UIM Nimbus protocol☆15Sep 28, 2020Updated 5 years ago
- Inject JavaScript within PDF document body☆18Jan 6, 2023Updated 3 years ago
- AtExec SMB remote execution command (using SCHTASKS)☆12May 24, 2021Updated 4 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Windows 10/11 unsigned kernel driver load/debugging☆20Feb 17, 2023Updated 3 years ago
- ERPNext / Frappe Framework MariaDB configuration file☆16Jun 22, 2021Updated 4 years ago
- Lots of POC Codes & Preparation materials, scripts, discovery processes in there.☆16Feb 8, 2024Updated 2 years ago
- Asynchronous public DNS auditing tool☆11May 22, 2023Updated 2 years ago
- A simple script to elevate current session to SYSTEM (needs to be run as Administrator)☆16Nov 11, 2024Updated last year
- CVE-2018-7600 - Drupal 7.x RCE☆72Apr 18, 2018Updated 8 years ago
- Python script to get Samba Server Version☆11May 8, 2018Updated 8 years ago
- Ransomware Detection Test PowerShell Script☆11Sep 22, 2017Updated 8 years ago
- Quick Command Cheatsheet, you can import/open directly to you ONE NOTE.☆10May 5, 2026Updated 2 weeks ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Golang C2 Agent PoC utilizing web and social media paltforms to issue command and control and pasting results to PasteBin☆17Apr 23, 2020Updated 6 years ago
- Kudzu is a Go C2 platform with an emphasis on extensibility.☆11Mar 30, 2021Updated 5 years ago
- A simple python script to exploit vulnerable Firebase Database. If the owner of the app have set the security rules as true for both "rea…☆22Apr 22, 2024Updated 2 years ago
- The OpenFISMA project is an open source application designed to reduce the complexity and automate the regulatory requirements of the Fed…☆10Apr 21, 2015Updated 11 years ago
- ShootCutMe an .LNK file creator tool for redteamer☆16Oct 2, 2024Updated last year
- Creating them Golden Tickets☆14Aug 16, 2025Updated 9 months ago
- LXD Image: Alpine 3.7 (Apache, PHP5.6)☆13Apr 5, 2018Updated 8 years ago