Sup4ch0k3's starred repositories

Awesome-Hacking

A collection of various awesome lists for hackers, pentesters and security researchers

License:CC0-1.0Stargazers:83458Issues:3840Issues:0

nuclei

Fast and customizable vulnerability scanner based on simple YAML based DSL.

PEASS-ng

PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)

Language:C#License:NOASSERTIONStargazers:15860Issues:219Issues:184

XSStrike

Most advanced XSS scanner.

Language:PythonLicense:GPL-3.0Stargazers:13210Issues:273Issues:286

GTFOBins.github.io

GTFOBins is a curated list of Unix binaries that can be used to bypass local security restrictions in misconfigured systems

Language:HTMLLicense:GPL-3.0Stargazers:10706Issues:144Issues:47

nuclei-templates

Community curated list of templates for the nuclei engine to find security vulnerabilities.

Language:JavaScriptLicense:MITStargazers:9082Issues:198Issues:1518

gitrob

Reconnaissance tool for GitHub organizations

Language:GoLicense:MITStargazers:5907Issues:154Issues:0

DevSecOps

Ultimate DevSecOps library

DefaultCreds-cheat-sheet

One place for all the default credentials to assist the Blue/Red teamers activities on finding devices with default password 🛡️

Language:PythonLicense:MITStargazers:5572Issues:87Issues:16

Cheatsheet-God

Penetration Testing Reference Bank - OSCP / PTP & PTX Cheatsheet

payloads

Git All the Payloads! A collection of web attack payloads.

Language:ShellLicense:GPL-3.0Stargazers:3603Issues:198Issues:5

Java-Deserialization-Cheat-Sheet

The cheat sheet about Java Deserialization vulnerabilities

fuzz.txt

Potentially dangerous files

Gopherus

This tool generates gopher link for exploiting SSRF and gaining RCE in various servers

Language:PythonLicense:MITStargazers:2817Issues:22Issues:16

PCAPdroid

No-root network monitor, firewall and PCAP dumper for Android

Language:JavaLicense:GPL-3.0Stargazers:2283Issues:44Issues:347

no-defender

A slightly more fun way to disable windows defender + firewall. (through the WSC api)

medusa

Binary instrumentation framework based on FRIDA

Language:PythonLicense:GPL-3.0Stargazers:1547Issues:44Issues:44

wsMemShell

WebSocket 内存马/Webshell,一种新型内存马/WebShell技术

RemotePotato0

Windows Privilege Escalation from User to Domain Admin.

SharPyShell

SharPyShell - tiny and obfuscated ASP.NET webshell for C# web applications

Language:PythonLicense:GPL-3.0Stargazers:904Issues:18Issues:14

HackerPermKeeper

Linux权限维持

Language:PythonLicense:MITStargazers:646Issues:5Issues:2

o-mvll

:electron: O-MVLL is a LLVM-based obfuscator for native code (Android & iOS)

Language:C++License:Apache-2.0Stargazers:610Issues:19Issues:26

binder-trace

Binder Trace is a tool for intercepting and parsing Android Binder messages. Think of it as "Wireshark for Binder".

Language:PythonLicense:MITStargazers:559Issues:21Issues:22

aws-security-assessment-solution

An AWS tool to help you create a point in time assessment of your AWS account using Prowler.

Language:PythonLicense:Apache-2.0Stargazers:508Issues:18Issues:15

cmd.jsp

A super small jsp webshell with file upload capabilities.

Language:JavaLicense:GPL-3.0Stargazers:287Issues:15Issues:0

Open-Source-Information-Leakage

开源项目信息泄露笔记

R3d-Buck3T

Penetration Testing, Vulnerability Assessment and Red Team Learning

Brutal_SSH

Brutal SSH: SSH Login brute force, scan for vulnerable version and 0 day exploit (under development)

Language:PythonLicense:MITStargazers:82Issues:5Issues:0

codeql-agent-extension

:pick: An extension for Visual Studio Code that simplifies CodeQL usage and executes code scanning automatically.

Language:TypeScriptLicense:NOASSERTIONStargazers:23Issues:1Issues:3

tetctf2021

tetctf2020_amf_writeups

Language:PythonStargazers:23Issues:0Issues:0