z3v2cicidi's starred repositories

awesome-osint

:scream: A curated list of amazingly awesome OSINT

spiderfoot

SpiderFoot automates OSINT for threat intelligence and mapping your attack surface.

Language:PythonLicense:MITStargazers:12385Issues:364Issues:585

theHarvester

E-mails, subdomains and names Harvester - OSINT

LOLBAS

Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)

Language:XSLTLicense:GPL-3.0Stargazers:6778Issues:228Issues:94

fluxion

Fluxion is a remake of linset by vk496 with enhanced functionality.

Language:HTMLLicense:GPL-3.0Stargazers:4835Issues:275Issues:998

dnstwist

Domain name permutation engine for detecting homograph phishing attacks, typo squatting, and brand impersonation

Language:PythonLicense:Apache-2.0Stargazers:4765Issues:154Issues:119

Red-Team-Infrastructure-Wiki

Wiki to collect Red Team infrastructure hardening resources

WinPwnage

UAC bypass, Elevate, Persistence methods

hate_crack

A tool for automating cracking methodologies through Hashcat from the TrustedSec team.

odat

ODAT: Oracle Database Attacking Tool

Internal-Monologue

Internal Monologue Attack: Retrieving NTLM Hashes without Touching LSASS

Language:C#Stargazers:1370Issues:57Issues:0

AutoBlue-MS17-010

This is just an semi-automated fully working, no-bs, non-metasploit version of the public exploit code for MS17-010

Language:PythonLicense:MITStargazers:1123Issues:31Issues:34

KeeThief

Methods for attacking KeePass 2.X databases, including extracting of encryption key material from memory.

Language:C#License:BSD-3-ClauseStargazers:914Issues:34Issues:1

Chimay-Red

Working POC of Mikrotik exploit from Vault 7 CIA Leaks

aiodnsbrute

Python 3.5+ DNS asynchronous brute force utility

Language:PythonLicense:GPL-3.0Stargazers:637Issues:21Issues:9

nsa-rules

Password cracking rules and masks for hashcat that I generated from cracked passwords.

Language:ShellLicense:NOASSERTIONStargazers:522Issues:29Issues:0

WHP

Micro$oft Windows Hacking Pack

Language:PythonLicense:WTFPLStargazers:512Issues:27Issues:0

xxer

A blind XXE injection callback handler. Uses HTTP and FTP to extract information. Originally written in Ruby by ONsec-Lab.

Language:PythonLicense:MITStargazers:510Issues:8Issues:0

ct-exposer

An OSINT tool that discovers sub-domains by searching Certificate Transparency logs

Language:PythonLicense:GPL-3.0Stargazers:464Issues:23Issues:7

CVE-2018-8120

CVE-2018-8120 Exploit for Win2003 Win2008 WinXP Win7

backdoors

Simple linux backdoors and hiding techniques

Language:ShellStargazers:212Issues:6Issues:0

udfhack

Database takeover UDF repository

busybotnet

Security For Embedeed Systems - One Bin to Rule Them All.

Language:CLicense:NOASSERTIONStargazers:151Issues:17Issues:4

sjet

siberas JMX exploitation toolkit

Language:PythonLicense:MITStargazers:128Issues:3Issues:2

SmbScanner

Smb Scanner from PingCastle

Language:PowerShellStargazers:118Issues:6Issues:0

CVE-2018-0296

Test CVE-2018-0296 and extract usernames

Language:GoStargazers:108Issues:5Issues:0

Acamar

A Python3 based single-file subdomain enumerator

Language:PythonLicense:MITStargazers:92Issues:3Issues:6

Chimay-Blue

Mikrotik SMB buffer overflow exploit

Language:PythonLicense:NOASSERTIONStargazers:64Issues:7Issues:6

inSp3ctor

AWS S3 Bucket/Object Finder

Language:PythonStargazers:25Issues:1Issues:0