Brian Scardina's starred repositories

zeek

Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.

Language:C++License:NOASSERTIONStargazers:6250Issues:0Issues:0

CVEs

A collection of proof-of-concept exploit scripts written by the team at Rhino Security Labs for various CVEs.

Language:PythonLicense:BSD-3-ClauseStargazers:788Issues:0Issues:0

heimdallr-ida

A IDA plugin to enable linking to locations in an IDB with a disas:// URI

Language:PythonLicense:GPL-3.0Stargazers:31Issues:0Issues:0

coroot

Coroot is an open-source APM & Observability tool, a DataDog and NewRelic alternative πŸ“Š, πŸ–₯️, πŸ‘‰. Powered by eBPF for rapid insights into system performance. Monitor, analyze, and optimize your infrastructure effortlessly for peak reliability at any scale.

Language:GoLicense:Apache-2.0Stargazers:4860Issues:0Issues:0

networkmapper

Generates a network diagram using Tenable data

Language:PythonStargazers:4Issues:0Issues:0

AVMP

A collection of tools for managing and automating vulnerability management.

Language:PythonLicense:Apache-2.0Stargazers:14Issues:0Issues:0

nessus-file-analyzer

GUI tool which enables you to parse nessus scan files from Nessus and Tenable.SC by (C) Tenable, Inc. and exports results to a Microsoft Excel Workbook for effortless analysis.

Language:PythonLicense:GPL-3.0Stargazers:89Issues:0Issues:0

tenable.sc

Python Tenable.sc scripts including Combination Asset Creator, Tenable Report Creator, Tenable Report Downloader, ServiceNow integration with Tenable.sc, Tenable API, ServiceNow API

Language:PythonStargazers:6Issues:0Issues:0

navi

A Command-line tool which leverages the Tenable.io API to reduce the time it takes to get information that is common during remediation or a troubleshooting event

Language:PythonLicense:GPL-3.0Stargazers:72Issues:0Issues:0

pyTenable

Python Library for interfacing into Tenable's platform APIs

Language:PythonLicense:MITStargazers:334Issues:0Issues:0

AutoRecon

Simple shell script for automated domain recognition with some tools

Language:ShellStargazers:297Issues:0Issues:0

DNSenum

Bash script for DNS Enumeration.

Language:ShellLicense:MITStargazers:94Issues:0Issues:0

top25-parameter

For basic researches, top 25 vulnerability parameters that can be used in automation tools or manual recon. πŸ›‘οΈβš”οΈπŸ§™

License:NOASSERTIONStargazers:1666Issues:0Issues:0

parameth

This tool can be used to brute discover GET and POST parameters

Language:PythonStargazers:1335Issues:0Issues:0

Silver

Mass scan IPs for vulnerable services

Language:PythonLicense:GPL-3.0Stargazers:1025Issues:0Issues:0

uDork

uDork is a script written in Bash Scripting that uses advanced Google search techniques to obtain sensitive information in files or directories, find IoT devices, detect versions of web applications, and so on.

Language:ShellStargazers:790Issues:0Issues:0

GoMugger

A fast tool written in Golang used to check for sensitive/juicy information within web pages content

Language:GoLicense:MITStargazers:7Issues:0Issues:0

Ghidrathon

The FLARE team's open-source extension to add Python 3 scripting to Ghidra.

Language:JavaLicense:Apache-2.0Stargazers:675Issues:0Issues:0

AutoRepeater

Automated HTTP Request Repeating With Burp Suite

Language:JavaLicense:MITStargazers:830Issues:0Issues:0

networkx

Network Analysis in Python

Language:PythonLicense:NOASSERTIONStargazers:14536Issues:0Issues:0

system-design

Learn how to design systems at scale and prepare for system design interviews

License:NOASSERTIONStargazers:30857Issues:0Issues:0

gotestwaf

An open-source project in Golang to asess different API Security tools and WAF for detection logic and bypasses

Language:GoLicense:MITStargazers:1489Issues:0Issues:0

sublert

Sublert is a security and reconnaissance tool which leverages certificate transparency to automatically monitor new subdomains deployed by specific organizations and issued TLS/SSL certificate.

Language:PythonLicense:MITStargazers:984Issues:0Issues:0

NodeSecurityShield

A Developer and Security Engineer friendly package for Securing NodeJS Applications.

Language:JavaScriptLicense:Apache-2.0Stargazers:26Issues:0Issues:0

lensm

Go assembly and source viewer

Language:GoLicense:MITStargazers:3403Issues:0Issues:0

pi-hole

A black hole for Internet advertisements

Language:ShellLicense:NOASSERTIONStargazers:48007Issues:0Issues:0

TinyCheck

TinyCheck allows you to easily capture network communications from a smartphone or any device which can be associated to a Wi-Fi access point in order to quickly analyze them. This can be used to check if any suspect or malicious communication is outgoing from a smartphone, by using heuristics or specific Indicators of Compromise (IoCs). In order to make it working, you need a computer with a Debian-like operating system and two Wi-Fi interfaces. The best choice is to use a Raspberry Pi (2+) a Wi-Fi dongle and a small touch screen. This tiny configuration (for less than $50) allows you to tap any Wi-Fi device, anywhere.

Language:PythonLicense:Apache-2.0Stargazers:3062Issues:0Issues:0

rancher

Complete container management platform

Language:GoLicense:Apache-2.0Stargazers:22865Issues:0Issues:0

karma_v2

β‘·β ‚πš”πšŠπš›πš–πšŠ 𝚟𝟸⠐Ⓘ is a Passive Open Source Intelligence (OSINT) Automated Reconnaissance (framework)

Language:ShellStargazers:761Issues:0Issues:0

BitBlinder

BurpSuite extension to inject custom cross-site scripting payloads on every form/request submitted to detect blind XSS vulnerabilities

Language:PythonStargazers:107Issues:0Issues:0