Giter Site home page Giter Site logo

pentestmano's Projects

impacket icon impacket

Impacket is a collection of Python classes for working with network protocols.

krbrelayup icon krbrelayup

KrbRelayUp - a universal no-fix local privilege escalation in windows domain environments where LDAP signing is not enforced (the default settings).

metabase-pre-auth-rce-poc icon metabase-pre-auth-rce-poc

This is a script written in Python that allows the exploitation of the Metabase's software security flaw in the described in CVE 2023-38646.

mimikatz icon mimikatz

A little tool to play with Windows security

powersploit icon powersploit

PowerSploit - A PowerShell Post-Exploitation Framework

psgetsystem icon psgetsystem

getsystem via parent process using ps1 & embeded c#

pyescrypt icon pyescrypt

Python bindings for yescrypt: memory-hard, NIST-compliant password hashing

python3-nmap icon python3-nmap

A python 3 library which helps in using nmap port scanner. This is done by converting each nmap command into a callable python3 method or function. System administrators can now automatic nmap scans using python

redteaming_cheatsheet icon redteaming_cheatsheet

Pentesting cheatsheet with all the commands I learned during my learning journey. Will try to to keep it up-to-date.

rogue-jndi icon rogue-jndi

A malicious LDAP server for JNDI injection attacks

seclists icon seclists

SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.

sharpcollection icon sharpcollection

Nightly builds of common C# offensive tools, fresh from their respective master branches built and released in a CDI fashion using Azure DevOps release pipelines.

sharpgpo icon sharpgpo

A Red Team tool for remotely manipulating Group Policy Object(GPO), Organizational Unit(OU), GPLink and Security Filtering

sharpgpoabuse icon sharpgpoabuse

SharpGPOAbuse is a .NET application written in C# that can be used to take advantage of a user's edit rights on a Group Policy Object (GPO) in order to compromise the objects that are controlled by that GPO.

sudo_inject icon sudo_inject

[Linux] Two Privilege Escalation techniques abusing sudo token

template-injection-table icon template-injection-table

The Template Injection Table is intended to help during the testing of an application for template injection vulnerabilities.

tinja icon tinja

TInjA is a CLI tool for testing web pages for template injection vulnerabilities and supports 44 of the most relevant template engines for eight different programming languages.

turtlepower icon turtlepower

Turtlepower is a collection of scripts I use to make boring repetive tasks I do in pentesting such as file transfers and setting up shells happen quick and easy so I can focus my energy on pwning.

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.