d4rkr0o's starred repositories
big-list-of-naughty-strings
The Big List of Naughty Strings is a list of strings which have a high probability of causing issues when used as user-input data.
PowerShell
PowerShell for every system!
Cheatsheet-God
Penetration Testing Reference Bank - OSCP / PTP & PTX Cheatsheet
class-dump
Generate Objective-C headers from Mach-O files.
SerializationDumper
A tool to dump Java serialization streams in a more human readable form.
CheckPlease
Sandbox evasion modules written in PowerShell, Python, Go, Ruby, C, C#, Perl, and Rust.
Invoke-CradleCrafter
PowerShell Remote Download Cradle Generator & Obfuscator
sudo_inject
[Linux] Two Privilege Escalation techniques abusing sudo token
awesome-windows-security
List of Awesome Windows Security Resources
CVE-2019-0192
RCE on Apache Solr using deserialization of untrusted data via jmx.serviceUrl
RCEScanner
Simple python script to extract unsafe functions from php projects
Swift-Apps-Reverse-Engineering
Swift Apps Reverse Engineering reading book
AWS-Scanner
Scans a list of websites for Cloudfront or S3 Buckets
bluekeep-exploit
Bluekeep(CVE 2019-0708) exploit released
rmi-deserialization
Slides/Demos from the BSides Munich 2019 talk "Attacking Java RMI in 2019"
canape-workshop2018
Material from our CANAPE workshop
52-technologies-in-2016
Let's learn a new technology every week. A new technology blog every Sunday in 2016.
dotCMSTokenGenerator
PoC JWT Token Generator, written by Timo Müller