Naivedya Pandey's starred repositories

GOAD

game of active directory

Language:PowerShellLicense:GPL-3.0Stargazers:5418Issues:78Issues:209

evil-winrm

The ultimate WinRM shell for hacking/pentesting

Language:RubyLicense:LGPL-3.0Stargazers:4537Issues:81Issues:0

WinPwn

Automation for internal Windows Penetrationtest / AD-Security

Language:PowerShellLicense:BSD-3-ClauseStargazers:3336Issues:81Issues:44

awesome-mobile-security

An effort to build a single place for all useful android and iOS security related stuff. All references and tools belong to their respective owners. I'm just maintaining it.

PrintSpoofer

Abusing impersonation privileges through the "Printer Bug"

awesome-threat-modelling

A curated list of threat modeling resources (Books, courses - free and paid, videos, tools, tutorials and workshops to practice on ) for learning Threat modeling and initial phases of security review.

Language:DockerfileLicense:CC0-1.0Stargazers:1404Issues:67Issues:5

BloodHound

Six Degrees of Domain Admin

Language:GoLicense:Apache-2.0Stargazers:1139Issues:28Issues:154

iOS

Most usable tools for iOS penetration testing

course-material

Course Material for in28minutes courses on Java, Spring Boot, DevOps, AWS, Google Cloud, and Azure.

RustHound

Active Directory data ingestor for BloodHound Legacy written in Rust. 🦀

Language:RustLicense:MITStargazers:945Issues:12Issues:20

sicat

The useful exploit finder

Language:PythonLicense:MITStargazers:785Issues:11Issues:6

FalconHound

FalconHound is a blue team multi-tool. It allows you to utilize and enhance the power of BloodHound in a more automated fashion. It is designed to be used in conjunction with a SIEM or other log aggregation tool.

Language:GoLicense:BSD-3-ClauseStargazers:740Issues:12Issues:1

OffSec-Reporting

Offensive Security OSCP, OSWP, OSEP, OSWA, OSWE, OSED, OSMR, OSEE, OSDA Exam and Lab Reporting / Note-Taking Tool

Vulnerable-Code-Snippets

A small collection of vulnerable code snippets

Nmap-Cheatsheet

:notebook: Reference guide for scanning networks with Nmap.

SpoolSploit

A collection of Windows print spooler exploits containerized with other utilities for practical exploitation.

Language:PythonLicense:GPL-3.0Stargazers:551Issues:17Issues:0

KRBUACBypass

UAC Bypass By Abusing Kerberos Tickets

ZxCDDoS

ZxCDDoS for education with LAYER 7, LAYER 4, AMP METHODS

D3m0n1z3dShell

Demonized Shell is an Advanced Tool for persistence in linux.

Language:ShellLicense:GPL-2.0Stargazers:302Issues:7Issues:0

CALL-BOMBER

Free Unlimited Call Bombing Tool

Language:PythonLicense:MITStargazers:283Issues:10Issues:19

XSSCon

XSSCon: Simple XSS Scanner tool

Language:PythonLicense:MITStargazers:210Issues:9Issues:15

aws-labs

A collection of hands-on labs to help learning the fundamentals of AWS cloud computing services.

Language:ShellLicense:MITStargazers:194Issues:11Issues:0

VDR

Vulnerable driver research tool, result and exploit PoCs

Language:PythonLicense:GPL-3.0Stargazers:181Issues:3Issues:0

penetration-testing-roadmap

Complete Roadmap for Penetration Testing

Thick-Client-Pentest-Checklist

A OWASP Based Checklist With 80+ Test Cases

toxicache

Go scanner to find web cache poisoning vulnerabilities in a list of URLs

CVE-2023-36424

Windows Kernel Pool (clfs.sys) Corruption Privilege Escalation

asploit

One line command and control backdoors for APIs and web applications.

Language:PythonLicense:MITStargazers:49Issues:1Issues:0

HackTheBox

A step-by-step walkthrough of different machines "pwned" on the CTF-like platform, HackTheBox.

Language:PythonStargazers:40Issues:3Issues:0