d4rkr0o

d4rkr0o

Geek Repo

Company:UNAM-CERT

Github PK Tool:Github PK Tool

d4rkr0o's starred repositories

big-list-of-naughty-strings

The Big List of Naughty Strings is a list of strings which have a high probability of causing issues when used as user-input data.

Language:PythonLicense:MITStargazers:46186Issues:850Issues:100

PowerShell

PowerShell for every system!

ipwndfu

open-source jailbreaking tool for many iOS devices

Language:PythonLicense:GPL-3.0Stargazers:7087Issues:378Issues:280

Cheatsheet-God

Penetration Testing Reference Bank - OSCP / PTP & PTX Cheatsheet

class-dump

Generate Objective-C headers from Mach-O files.

Language:Objective-CStargazers:3404Issues:138Issues:0

altdns

Generates permutations, alterations and mutations of subdomains and then resolves them

Language:PythonLicense:Apache-2.0Stargazers:2328Issues:62Issues:25

Dwarf

Full featured multi arch/os debugger built on top of PyQt5 and frida

Language:PythonLicense:GPL-3.0Stargazers:1271Issues:56Issues:89

SerializationDumper

A tool to dump Java serialization streams in a more human readable form.

Language:JavaLicense:MITStargazers:988Issues:7Issues:15

CheckPlease

Sandbox evasion modules written in PowerShell, Python, Go, Ruby, C, C#, Perl, and Rust.

Language:GoLicense:GPL-3.0Stargazers:897Issues:30Issues:1

Invoke-CradleCrafter

PowerShell Remote Download Cradle Generator & Obfuscator

Language:PowerShellLicense:Apache-2.0Stargazers:823Issues:37Issues:4

sudo_inject

[Linux] Two Privilege Escalation techniques abusing sudo token

exploits

Some of my exploits.

arlo

Python module for interacting with Netgear's Arlo camera system.

Language:PythonLicense:Apache-2.0Stargazers:518Issues:68Issues:161

snitch

information gathering via dorks

awesome-windows-security

List of Awesome Windows Security Resources

trudy

A transparent proxy that can modify and drop traffic for arbitrary TCP connections.

Language:GoLicense:GPL-2.0Stargazers:275Issues:21Issues:17

CVE-2019-0192

RCE on Apache Solr using deserialization of untrusted data via jmx.serviceUrl

RCEScanner

Simple python script to extract unsafe functions from php projects

Language:PythonStargazers:195Issues:6Issues:0

adapt

ADAPT is a tool that performs automated Penetration Testing for WebApps.

Language:PythonLicense:Apache-2.0Stargazers:187Issues:21Issues:12

Swift-Apps-Reverse-Engineering

Swift Apps Reverse Engineering reading book

AWS-Scanner

Scans a list of websites for Cloudfront or S3 Buckets

Language:GoLicense:UnlicenseStargazers:104Issues:12Issues:3

bluekeep-exploit

Bluekeep(CVE 2019-0708) exploit released

rmi-deserialization

Slides/Demos from the BSides Munich 2019 talk "Attacking Java RMI in 2019"

SCWF

CTF tool for identifying, brute forcing and decoding encryption schemes in an automated way

Language:JavaScriptLicense:GPL-3.0Stargazers:74Issues:1Issues:3

jmxbf

A brute force program to test weak accounts configured to access a JMX Registry

Language:JavaLicense:AGPL-3.0Stargazers:33Issues:7Issues:0

canape-workshop2018

Material from our CANAPE workshop

Language:PythonLicense:MITStargazers:22Issues:2Issues:0

prolint

Tool for automated source code review of Progress 4GL (OpenEdge ABL) code

Language:OpenEdge ABLLicense:LGPL-2.1Stargazers:20Issues:7Issues:0

52-technologies-in-2016

Let's learn a new technology every week. A new technology blog every Sunday in 2016.

Language:JavaScriptLicense:MITStargazers:10Issues:2Issues:0

dotCMSTokenGenerator

PoC JWT Token Generator, written by Timo Müller

Language:JavaStargazers:3Issues:3Issues:0