Sebastian Haas's starred repositories

BloodHound

Six Degrees of Domain Admin

Language:PowerShellLicense:GPL-3.0Stargazers:9865Issues:376Issues:510

airgeddon

This is a multi-use bash script for Linux systems to audit wireless networks.

Language:ShellLicense:GPL-3.0Stargazers:6496Issues:337Issues:423

Psychson

Phison 2251-03 (2303) Custom Firmware & Existing Firmware Patches (BadUSB)

WiFi-Pumpkin-deprecated

DEPRECATED, wifipumpkin3 -> https://github.com/P0cL4bs/wifipumpkin3

b374k

PHP Webshell with handy features

Language:CSSLicense:MITStargazers:2393Issues:141Issues:34

altdns

Generates permutations, alterations and mutations of subdomains and then resolves them

Language:PythonLicense:Apache-2.0Stargazers:2325Issues:62Issues:25

dvcs-ripper

Rip web accessible (distributed) version control systems: SVN/GIT/HG...

Language:PerlLicense:GPL-2.0Stargazers:1702Issues:51Issues:18

Hob0Rules

Password cracking rules for Hashcat based on statistics and industry patterns

SCANNER-INURLBR

Advanced search in search engines, enables analysis provided to exploit GET / POST capturing emails & urls, with an internal custom validation junction for each target / url found.

Language:PHPLicense:GPL-2.0Stargazers:872Issues:114Issues:11

XssPy

XssPy - Web Application XSS Scanner

Language:PythonLicense:MITStargazers:834Issues:63Issues:22

bfac

BFAC (Backup File Artifacts Checker): An automated tool that checks for backup artifacts that may disclose the web-application's source code.

Language:PythonLicense:GPL-3.0Stargazers:530Issues:24Issues:6

vbscan

OWASP VBScan is a Black Box vBulletin Vulnerability Scanner

Language:PerlLicense:GPL-3.0Stargazers:324Issues:35Issues:13

Metaphor

Metaphor - Stagefright with ASLR bypass

Language:PythonLicense:GPL-3.0Stargazers:311Issues:32Issues:16

CANToolz

CANToolz - framework for black-box CAN network analysis

Language:PythonLicense:NOASSERTIONStargazers:305Issues:46Issues:5

CVE-2015-1701

Win32k LPE vulnerability used in APT attack

Language:CLicense:BSD-2-ClauseStargazers:286Issues:34Issues:2

RSPET

RSPET (Reverse Shell and Post Exploitation Tool) is a Python based reverse shell equipped with functionalities that assist in a post exploitation scenario.

Language:PythonLicense:MITStargazers:260Issues:33Issues:24

sticky_keys_hunter

A script to test an RDP host for sticky keys and utilman backdoor.

Language:ShellLicense:GPL-3.0Stargazers:257Issues:16Issues:4

bravia-auth-and-remote

Shell snippets to auth and send remote control commands to Sony Bravia TVs

Language:ShellLicense:ISCStargazers:249Issues:27Issues:12

codewarrior

code-searching tool and static code analysis - Beta

Language:CLicense:BSD-3-ClauseStargazers:220Issues:12Issues:15

dymerge

🔓 A dynamic dictionary merger for successful dictionary based attacks.

Language:PythonLicense:MITStargazers:217Issues:25Issues:9

bugbountydash

[depreciated] Terminal dashboard for bug bounty hunters that use HackerOne and Bugcrowd

malusb

Malicious USB

Language:CLicense:LGPL-3.0Stargazers:170Issues:24Issues:5

xxeserve

XXE Out of Band Server.

blind-sql-bitshifting

A blind SQL injection module that uses bitshfting to calculate characters.

Language:PythonLicense:MITStargazers:111Issues:15Issues:1

domain

Setup script for Regon-ng

Language:PythonStargazers:4Issues:3Issues:0

public-pentesting-reports

Curated list of public penetration testing reports released by several consulting firms