FOGSEC's repositories
Pandoras-Box
This repo contains my custom scripts for Penetration Testing and Red Team Assessments. I will keep on updating this repo as and when I get time.
wordpress-exploit-framework
A Ruby framework designed to aid in the penetration testing of WordPress systems.
CasperStager
PoC for persisting .NET payloads in Windows Notification Facility (WNF) state names using low-level Windows Kernel API calls.
Darkpulsar
Darkpulsar - Exploit windows shadowbroker's
DoH_c2_Trigger
Code for blogpost: https://outflank.nl/blog/2018/10/25/building-resilient-c2-infrastructues-using-dns-over-https/
DVR-Exploiter
DVR-Exploiter a Bash Script Program Exploit The DVR's Based on CVE-2018-9995
git-all-secrets
A tool to capture all the git secrets by leveraging multiple open source git searching tools
git-secrets
Prevents you from committing secrets and credentials into git repositories
icebreaker
Gets plaintext Active Directory credentials if you're on the internal network but outside the AD environment
Internal-Monologue
Internal Monologue Attack: Retrieving NTLM Hashes without Touching LSASS
Invisi-Shell
Hide your Powershell script in plain sight. Bypass all Powershell security features
libSSH-Authentication-Bypass
Spawn to shell without any credentials by using CVE-2018-10933
php-webshells
Common php webshells. Do not host the file(s) on your server!
SharpAttack
A simple wrapper for C# tools
Tokenvator
A tool to elevate privilege with Windows Tokens
UltimateAppLockerByPassList
The goal of this repository is to document the most common techniques to bypass AppLocker.
windowsland
HITCON CTF 2018