X's starred repositories

sqlmap

Automatic SQL injection and database takeover tool

Language:PythonLicense:NOASSERTIONStargazers:32509Issues:1091Issues:5239

mimikatz

A little tool to play with Windows security

DOMPurify

DOMPurify - a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. DOMPurify works with a secure default, but offers a lot of configurability and hooks. Demo:

Language:JavaScriptLicense:NOASSERTIONStargazers:13981Issues:153Issues:586

webshell

This is a webshell open source project

wpscan

WPScan WordPress security scanner. Written for security professionals and blog maintainers to test the security of their WordPress websites. Contact us via contact@wpscan.com

Language:RubyLicense:NOASSERTIONStargazers:8602Issues:268Issues:1443

exploitdb

The legacy Exploit Database repository - New repo located at https://gitlab.com/exploit-database/exploitdb

LinEnum

Scripted Local Linux Enumeration & Privilege Escalation Checks

Language:ShellLicense:MITStargazers:7020Issues:195Issues:29

Windows-Exploit-Suggester

This tool compares a targets patch levels against the Microsoft vulnerability database in order to detect potential missing patches on the target. It also notifies the user if there are public exploits and Metasploit modules available for the missing bulletins.

Language:PythonLicense:GPL-3.0Stargazers:3964Issues:170Issues:36

H5SC

HTML5 Security Cheatsheet - A collection of HTML5 related XSS attack vectors

Language:JavaScriptLicense:MPL-2.0Stargazers:2854Issues:153Issues:9

php-webshells

Common PHP webshells you might need for your Penetration Testing assignments or CTF challenges. Do not host the file(s) on your server!

Diamorphine

LKM rootkit for Linux Kernels 2.6.x/3.x/4.x/5.x/6.x (x86/x86_64 and ARM64)

Language:CLicense:NOASSERTIONStargazers:1831Issues:55Issues:35

pyminifier

Pyminifier is a Python code minifier, obfuscator, and compressor.

Language:PythonLicense:GPL-3.0Stargazers:1464Issues:48Issues:126

Neural-Network

Abstract visualization of biological neural network

Language:JavaScriptLicense:MITStargazers:868Issues:47Issues:5

Unix-Privilege-Escalation-Exploits-Pack

Exploits for getting local root on Linux, BSD, AIX, HP-UX, Solaris, RHEL, SUSE etc.

PHPIDS

PHPIDS (PHP-Intrusion Detection System) is a simple to use, well structured, fast and state-of-the-art security layer for your PHP based web application

Language:PHPLicense:LGPL-3.0Stargazers:794Issues:92Issues:53

IE9-IE11-Vulnerability-Advanced-Exploitation

Public slides and demo code of bypassing security protection in the latest Windows Internet Explorer.

PELT

Post Exploitation Linux Toolkit

Exploit-Demos

How to write basic memory corruption exploits on Windows

Language:C++Stargazers:28Issues:11Issues:0

HitCon-2014-IE-11-0day-Windows-8.1-Exploit

HitCon 2014 : IE 11 0day & Windows 8.1 Exploit

Language:JavaScriptStargazers:19Issues:4Issues:0

Windows-8.1---IE-11-Exploit

Windows 8.1 + IE 11 Exploit

Language:HTMLStargazers:18Issues:3Issues:0