Dominique RIGHETTO (righettod)

righettod

Geek Repo

Company:@ExcelliumSA

Location:Luxemburg

Home Page:https://www.righettod.eu

Twitter:@righettod

Github PK Tool:Github PK Tool


Organizations
ExcelliumSA
oshp
OWASP

Dominique RIGHETTO's repositories

poc-graphql

Research on GraphQL from an AppSec point of view.

Language:JavaLicense:MITStargazers:406Issues:16Issues:1

toolbox-pentest-web

Docker toolbox for pentest of web based application.

Language:PythonLicense:GPL-3.0Stargazers:132Issues:11Issues:33

burp-piper-custom-scripts

Custom scripts for the PIPER Burp extensions.

Language:PythonLicense:GPL-3.0Stargazers:97Issues:9Issues:4

log-requests-to-sqlite

BURP extension to record every HTTP request send via BURP and create an audit trail log of an assessment.

Language:JavaLicense:GPL-3.0Stargazers:60Issues:4Issues:22

document-upload-protection

POC in order to protect an document upload application feature against "malicious" document submission.

website-passive-reconnaissance

Script to automate, when possible, the passive reconnaissance performed on a website prior to an assessment.

Language:PythonLicense:GPL-3.0Stargazers:34Issues:3Issues:21

log4shell-analysis

Contains all my research and content produced regarding the log4shell vulnerability

Language:JavaLicense:GPL-3.0Stargazers:32Issues:5Issues:4

tls-cert-discovery

Script to identify new host using the subjectAltName (Subject Alternate Name) extension of a x509 HTTP TLS certificate.

Language:PythonLicense:GPL-3.0Stargazers:10Issues:3Issues:5

powershell-android-utils

PowerShell module providing utility commands to manipulate a APK file on Windows

Language:PowerShellLicense:GPL-3.0Stargazers:8Issues:3Issues:1

toolbox-jwt

Docker toolbox with different scripts having for the objective to perform different kinds of attacks against JWT tokens.

Language:DockerfileLicense:GPL-3.0Stargazers:6Issues:2Issues:0

robots-disallowed-dict-builder

Script generating a dictionary containing the most common DISALLOW clauses from robots.txt file found on CISCO Top 1 million sites

Language:PythonLicense:GPL-3.0Stargazers:4Issues:4Issues:3

log4shell-payload-grabber

Tool to try to retrieve the java class used as dropper for the RCE in the context of log4shell vulnerability.

Language:JavaLicense:GPL-3.0Stargazers:3Issues:4Issues:1

SecLists

SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.

Language:PHPLicense:MITStargazers:2Issues:2Issues:0

Invoke-CreateModuleHelpFile

PowerShell function to create a HTML help file for a module and all it's commands.

Language:PowerShellStargazers:1Issues:2Issues:0

nuclei-templates

Community curated list of templates for the nuclei engine to find security vulnerabilities.

Language:JavaScriptLicense:MITStargazers:1Issues:1Issues:0
Language:JavaLicense:NOASSERTIONStargazers:1Issues:1Issues:0

pkcheck

Program brute forcing the passphrase of a private key

Language:GoLicense:GPL-3.0Stargazers:1Issues:3Issues:0

sandbox

Provide network listeners during online training web challenges/labs.

Language:ShellStargazers:1Issues:3Issues:0

voxxeddays-lux-2018

Demonstration videos and presentation regarding the talk given at the VOXXED LU 2018 conference.

Language:JavaLicense:GPL-3.0Stargazers:1Issues:3Issues:0

voxxeddays-lux-2022

Demonstration videos and presentation regarding the talk given at the VOXXED LU 2022 conference.

Language:PHPLicense:GPL-3.0Stargazers:1Issues:3Issues:0

www-project-secure-headers

The OWASP Secure Headers Project

Language:PythonLicense:Apache-2.0Stargazers:1Issues:1Issues:0

BChecks

BChecks collection for Burp Suite Professional

License:LGPL-3.0Stargazers:0Issues:1Issues:0

bchecks-library

Store custom BCheck scripts created prior to propose them to the BCheck PortSwigger repository.

Language:PowerShellLicense:GPL-3.0Stargazers:0Issues:2Issues:0

oshp-stats

Stats about HTTP response security headers usage mentioned by the OSHP.

Language:PythonLicense:GPL-3.0Stargazers:0Issues:1Issues:0

oshp-tracking

Repository used to organize freely the work on the OSHP projects.

License:GPL-3.0Stargazers:0Issues:1Issues:0

oshp-validator

Venom tests suite to validate an HTTP security response headers configuration against OSHP recommendation.

Language:PythonLicense:GPL-3.0Stargazers:0Issues:1Issues:0
Language:CSSStargazers:0Issues:2Issues:0

righettod.github.io

Redirection to personal website

Language:HTMLStargazers:0Issues:3Issues:0

timesheet-utils

Program that I used to know the number of working days and hours according to Luxembourg public holidays to fill my professional timesheet.

Language:GoLicense:GPL-3.0Stargazers:0Issues:2Issues:0

toolbox-regex

Toolbox to have a local instance of RegExr to create regex against sensitive/private content.

Language:DockerfileLicense:GPL-3.0Stargazers:0Issues:0Issues:0