Bertrand Stivalet's starred repositories
CobaltStrike
CobaltStrike's source code
breaking-and-pwning-apps-and-servers-aws-azure-training
Course content, lab setup instructions and documentation of our very popular Breaking and Pwning Apps and Servers on AWS and Azure hands on training!
AD-control-paths
Active Directory Control Paths auditing and graphing tools
Mobile-Security-Framework-MobSF
Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.
AD-Attack-Defense
Attack and defend active directory using modern post exploitation adversary tradecraft activity
PatrowlManager
PatrOwl - Open Source, Smart and Scalable Security Operations Orchestration Platform
Docker-Secure-Deployment-Guidelines
Deployment checklist for securely deploying Docker
docker-bench-security
The Docker Bench for Security is a script that checks for dozens of common best-practices around deploying Docker containers in production.
owasp-mastg
The Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes the technical processes for verifying the controls listed in the OWASP Mobile Application Security Verification Standard (MASVS).
SimpleEmailSpoofer
A simple Python CLI to spoof emails.
MISP-maltego
Set of Maltego transforms to inferface with a MISP Threat Sharing instance, and also to explore the whole MITRE ATT&CK dataset.
swordphish-awareness
Swordphish Phishing Awareness Tool
ADAPE-Script
Active Directory Assessment and Privilege Escalation Script
pingcastle
PingCastle - Get Active Directory Security at 80% in 20% of the time
juicy-potato
A sugared version of RottenPotatoNG, with a bit of juice, i.e. another Local Privilege Escalation tool, from a Windows Service Accounts to NT AUTHORITY\SYSTEM.
WiFi-Pumpkin-deprecated
DEPRECATED, wifipumpkin3 -> https://github.com/P0cL4bs/wifipumpkin3
mail-security-tester
A testing framework for mail security and filtering solutions.