Kraken
A powerful Python-based tool designed to centralize and streamline brute-forcing tasks. Kraken provides a suite of tools for #cybersecurity professionals to efficiently perform brute-force attacks across various protocols and services.
https://t.co/BpdUYyQmXA
#bugbounty
🛡️🔍 Shodan Dorks
This GitHub repo offers Shodan "dorks" to help find vulnerabilities in internet-connected devices like webcams and routers. Great for both beginners and pros in network security.
https://t.co/mevw0yTpvg
#cybersecurity#infosec#pentesting
ByeDPI for Android
#Android application that runs a local #VPN service to bypass DPI (Deep Packet Inspection) and censorship.
https://t.co/34CvKXcG61
#cybersecurity#infosec#privacy
Entropy
A CLI tool that will scan your codebase for high entropy lines, which are often secrets.
https://t.co/UPp4Vrp0vr
#cybersecurity#infosec#bugbounty
open-source-web-scanners
A list of open source web security scanners on GitHub and GitLab, ordered by Stars. It does not provide in-depth analysis - for more analysis or a wider range of tools.
https://t.co/HxS5Koq7d3
#cybersecurity#pentesting#bugbounty
SGN
A polymorphic binary encoder for offensive security purposes such as generating statically undetecable binary payloads. It uses a additive feedback loop to encode given binary instructions similar to #LSFR.
https://t.co/unkypJwdpC
#cybersecurity#pentesting#redteam
🕵️♂️ Sniffnet
A network monitoring tool to help you easily keep track of your Internet traffic.
https://t.co/RAuTBHbd2W
#cybersecurity#infosec#pentesting
🖧🔍 NetAlertX
#WIFI / LAN intruder detector. Scans for devices connected to your network and alerts you if new and unknown devices are found.
https://t.co/ZO7lPX8ctt
#cybersecurity#infosec#pentesting
RemoteSessionEnum
Remotely Enumerate sessions using undocumented Windows Station APIs
https://t.co/KYUcc0XYI7
Details:
https://t.co/qe8z3RL7OR
#cybersecurity#infosec#pentesting
ADSpider
Tool for monitor Active Directory changes in real time without getting all objects. Instead of this it use replication metadata and Update Sequence Number (USN) to filter current properties of objects.
https://t.co/Sc18Sd81iT
#cybersecurity#infosec#pentesting
Havoc-C2-SSRF-poc
This exploit works by spoofing a demon agent registration and checkins to open a TCP socket on the teamserver and read/write data from it. This allows attackers to leak origin IPs of teamservers and much more.
https://t.co/faf4pyO9BR
#cybersecurity#infosec
RegreSSHion
The Qualys Threat Research Unit has discovered a Remote Unauthenticated Code Execution vulnerability in OpenSSH’s server (sshd) in glibc-based Linux systems. #CVE assigned to this vulnerability is CVE-2024-6387.
https://t.co/hT9MMKYK3q
#cybersecurity#infosec
DumpMDEConfig PowerShell Script
PowerShell script to dump Microsoft Defender Config, protection history and Exploit Guard Protection History (no admin privileges required )
https://t.co/UJVPWyfNBF
#cybersecurity#pentesting#redteam
GoRedOps
A collection of Golang projects designed specifically for red teamers and offensive security operations. This repository provides various tools and techniques essential for penetration testing, exploitation, and security research.
https://t.co/oEQszjsTQi
#pentesting