0xKayala / nuclei-templates-initial-access

A standalone collection of widely used technologies with default credentials enabled, which can be utilized for establishing an initial foothold in broad-scope Red-Team engagements, VAPT (Vulnerability Assessment and Penetration Testing), or general bug bounty programs.

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Logo-cropped

Default Credential Initial Access 🚀

This project provides a comprehensive set of Nuclei templates designed to identify and exploit default credentials across a variety of orthodox yet commonly used technologies. Whether you’re a Red Teamer, conducting Vulnerability Assessments, performing Penetration Testing (VAPT), or participating in Bug Bounty programs, this workflow is your go-to resource for initial foothold acquisition.

Note

The research on this is still continued so do expect template additions. Drop new technology names and bugs via the "issues" section of github.

Mantis Bug Tracker💻

Detection: Tech-Detect-Templates/Mantis-BugTracker-Detect.yaml

Default Login: Default-Login-Templates/Mantis-Default_login.yaml

Nagios XI CMS💻

Detection: Tech-Detect-Templates/NagiosXI-CMS-Detect.yaml

Default Login: Default-Login-Templates/NagiosXI-CMS-Default-Login.yaml

PFSense💻

Detection: Tech-Detect-Templates/PFSense-Detect.yaml

Default Login: Default-Login-Templates/PFSense-Default-Login.yaml

PRTG Network Monitor💻

Detection: Tech-Detect-Templates/PRTGNetwork-Detect.yaml

Default Login: Default-Login-Templates/PRTGNetwork-DefaultLogin.yaml

RedMine💻

Detection: Tech-Detect-Templates/RedMine-Detect.yaml

Default Login: Default-Login-Templates/Redmine-Default-Login.yaml

TestLink💻

Detection: Tech-Detect-Templates/TestLink-Detect.yaml

Default Login: Default-Login-Templates/TestLink-Default-Login.yaml

UniFi💻

Detection: Tech-Detect-Templates/Unifi-Detect.yaml

Default Login: Default-Login-Templates/UniFi-Default-Login.yaml

ZoneMinder💻

Detection: Tech-Detect-Templates/ZoneMinder-Tech-Detect.yaml

Default Login: Default-Login-Templates/ZoneMinder-Default-Login.yaml

Workflow Support 🛠️ A workflow has been added to this repository, simplifying the process of initial access hunting via default credentials for specific panels.

Feel free to explore the workflow further, and if you have any additional requests or questions, feel free to ask! 😊 Do not hesitate to customize the templates to match your project’s style and personality. Happy hacking! 😊🔍🔐

Made with ❤️ by Yash Vardhan Tripathi

About

A standalone collection of widely used technologies with default credentials enabled, which can be utilized for establishing an initial foothold in broad-scope Red-Team engagements, VAPT (Vulnerability Assessment and Penetration Testing), or general bug bounty programs.