A set of recipes useful in pentesting and red teaming scenarios
☆148Jul 7, 2023Updated 3 years ago
Alternatives and similar repositories for pentesting-cookbook
Users that are interested in pentesting-cookbook are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- JustTryHarder, a cheat sheet which will aid you through the PWK course & the OSCP Exam. (Inspired by PayloadAllTheThings)☆835Jul 7, 2026Updated last month
- A curated list of tools and techniques written from experience in weaponization of malware☆40Oct 26, 2023Updated 2 years ago
- Combine words from two wordlist files and concatenate them with an optional delimiter☆40Sep 25, 2023Updated 2 years ago
- Spins up a docker container with several useful tools for offensive security in macOS/cloud environments. Also installs the needed depend…☆18Nov 3, 2021Updated 4 years ago
- My OSCP notes☆230Jul 17, 2024Updated 2 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Collection of Pentest Notes and Cheatsheets☆408Jun 25, 2025Updated last year
- Wordlists handcrafted (and automated) with ♥☆236Aug 1, 2025Updated last year
- A curated list of awesome privilege escalation☆1,597Mar 23, 2026Updated 5 months ago
- gather gather gather☆586Mar 15, 2025Updated last year
- Some notes written during my OSCP Journey (KeepNote project)☆11Mar 2, 2020Updated 6 years ago
- UglyEXe - bypass some AVs☆17Feb 28, 2020Updated 6 years ago
- Emulate the handshake packets of an RDP server with python☆15Jun 26, 2018Updated 8 years ago
- buffer-overflow☆15Feb 2, 2022Updated 4 years ago
- Create Cobalt Strike malleable C2 profiles with HTTPS configs☆18May 23, 2020Updated 6 years ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Curso realizado por Ricardo Narvaja de CrackLatinos (Mirror) http://ricardonarvaja.info☆12May 28, 2018Updated 8 years ago
- ☆24Feb 7, 2025Updated last year
- ☆18Oct 4, 2020Updated 5 years ago
- Gives context to a system. Uses EQGRP shadow broker leaked list to give some descriptions to processes.☆15Jun 5, 2017Updated 9 years ago
- "Powershell script assisting with domain enumerating and in finding quick wins" - Basically written while doing the 'Advanced Red Team' l…☆83Jul 30, 2021Updated 5 years ago
- Tricks for penetration testing☆589Apr 22, 2026Updated 4 months ago
- ☆16Feb 10, 2020Updated 6 years ago
- Finding SSL Blindspots for Red Teams☆34Jul 28, 2020Updated 6 years ago
- ☆25Jul 7, 2022Updated 4 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- See adversary, do adversary: Simple execution of commands for defensive tuning/research (now with more ELF on the shelf)☆109Feb 12, 2023Updated 3 years ago
- ☆23Aug 1, 2020Updated 6 years ago
- Several Python scripts used to fuzz and exploit SLmail. These are meant to supplement the Kali Linux Hands-on Pentesting Udemy course.☆16Dec 24, 2018Updated 7 years ago
- ☆20Aug 18, 2020Updated 6 years ago
- LAPS module for CrackMapExec☆29Oct 20, 2021Updated 4 years ago
- RunPE adapted for x64 and written in C, does not use RWX☆28May 18, 2024Updated 2 years ago
- Zero Infrastructure Password Cracking☆417Aug 22, 2024Updated 2 years ago
- Perform automated network reconnaissance scans☆236May 4, 2023Updated 3 years ago
- Some Pentesters, Security Researchers, Red Teamers which i learned from them a lot...☆115Jan 25, 2024Updated 2 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Hacking the Singularity. Deep learning hacking. Weaponizing AI in Offensive security☆131Jun 24, 2024Updated 2 years ago
- dragonscan is a information gathering tool coded in python cloning in /root/ folder is recommended☆12Aug 31, 2019Updated 7 years ago
- SharpReg is a simple code set to interact with the Remote Registry service api and is compatible with Cobalt Strike.☆27Apr 12, 2020Updated 6 years ago
- Automatically spin up infra for phishing☆63Feb 1, 2020Updated 6 years ago
- MimeCast Password Spraying Tool☆47Oct 30, 2019Updated 6 years ago
- unix SSH post-exploitation 1337 tool☆142Dec 16, 2018Updated 7 years ago
- PowerShell payload generator☆120Sep 30, 2021Updated 4 years ago