Ecosyste.ms: Awesome

An open API service indexing awesome lists of open source software.

https://github.com/blackhatruby/BHR_Labs

Black Hat Ruby book | Lab files | Buy the book https://www.amazon.com/dp/B08JHSF6GT

api blackhat blackhat-ruby burpsuite exploits hacking metasploit rails rce ruby xss

Last synced: 04 Jul 2024

https://github.com/sdushantha/dora

Find exposed API keys based on RegEx and get exploitation methods for some of keys that are found

apikeys bugbounty bugcrowd ethical-hacking exploits hackerone infosec python regex

Last synced: 04 Jul 2024

https://github.com/mitchellkrogza/Fail2Ban.WebExploits

This custom Fail2Ban filter and jail will deal with all scans for common Wordpress, Joomla and other Web Exploits being scanned for by automated bots and those seeking to find exploitable web sites.

apache drupal exploits fail2ban fail2ban-filter hacking joomla nginx web-exploits wordpress

Last synced: 04 Jul 2024

https://github.com/polaris64/web_exploit_detector

The Web Exploit Detector is a Node.js application used to detect possible infections, malicious code and suspicious files in web hosting environments

cms detection-rules exploits infection nodejs php scanner security-audit suspicious-files web wordpress wso-webshell

Last synced: 28 Jun 2024

https://github.com/topscoder/nuclei-wordfence-cve

The EXCLUSIVE Collection of 36,000+ Nuclei templates based on Wordfence intel. Daily updates for bulletproof WordPress security.

bugbounty cve exploits nuclei nuclei-templates pentesting projectdiscovery scanner security vulnerability vulnerability-scanning wordfence wordpress

Last synced: 25 Jun 2024

https://github.com/1hAck-0/UE4-Cheat-Source-Code

This a small cheat menu for Sword With Sauce (a UE4 game) that I made in a week or so. The reason why I am sharing the project is that it is probably one of the best sources to learn UE game hacking from. The project has many comments.

aimbot c cheat code cpp engine esp exploits game-hacking hack menu mod mod-menu source source-code ue ue4 unreal unreal-engine unreal-engine4

Last synced: 15 Jun 2024

https://github.com/ysrc/xunfeng

巡风是一款适用于企业内网的漏洞快速应急,巡航扫描系统。

exploits infosec pentesting scanner security security-audit vulnerability-assessment vulnerability-detection vulnerability-scanners

Last synced: 14 Jun 2024

https://github.com/Ascotbe/Kernelhub

:palm_tree:Linux、macOS、Windows Kernel privilege escalation vulnerability collection, with compilation environment, demo GIF map, vulnerability details, executable file (提权漏洞合集)

cve cve-2021-26868 cve-2021-33739 cve-2021-34486 cve-2021-36934 cve-2021-40444 cve-2021-40449 cve-2021-42278 cve-2021-42287 cve-2022-21882 cve-2022-26937 cve-2022-30206 cve-2022-33679 cve-2022-34718 exploits kernel linux pentest tool windows

Last synced: 09 Jun 2024

https://github.com/swapravo/polkadots

CVE-2021-3560 Local PrivEsc Exploit

cve-2021-3560 exploits poc polkit privilege-escalation

Last synced: 06 Jun 2024

https://github.com/pedrib/PoC

Advisories, proof of concept files and exploits that have been made public by @pedrib.

advisories exploits hacking metasploit vulnerabilities

Last synced: 05 Jun 2024

https://github.com/1N3/Findsploit

Find exploits in local and online databases instantly

bugbounty exploitdb exploits find hackers metasploit nmap pentest search

Last synced: 02 Jun 2024

https://github.com/anouarbensaad/vulnx

vulnx 🕷️ an intelligent Bot, Shell can achieve automatic injection, and help researchers detect security vulnerabilities CMS system. It can perform a quick CMS security detection, information collection (including sub-domain name, ip address, country information, organizational information and time zone, etc.) and vulnerability scanning.

auto-exploiter bot cloudflare-detection cms-detector crawler detects-vulnerabilities dorks exploits hacking information-gathering pentest security-tools shell-injection subdomains-gathering vulnerability vulnerability-assessment vulnerability-detection vulnerability-exploit website-vulnerability-scanner wp-scanner

Last synced: 02 Jun 2024

https://github.com/vfeedio/pyvfeed

Python API for vFeed Vulnerability & Threat Intelligence Database Enterprise & Pro Editions

capec cve cwe exploits oval python-api scap threat-database threat-intelligence vulnerability-databases vulnerability-management vulnerability-scanners

Last synced: 02 Jun 2024

https://github.com/projectdiscovery/nuclei-templates

Community curated list of templates for the nuclei engine to find security vulnerabilities.

bugbounty exploit-development exploits fingerprint hacktoberfest nuclei nuclei-checks nuclei-templates security vulnerability-detection

Last synced: 01 Jun 2024

https://github.com/stealthcopter/deepce

Docker Enumeration, Escalation of Privileges and Container Escapes (DEEPCE)

container-escape deepce docker-enumeration enumeration exploits privilege-escalation privilege-escalation-exploits

Last synced: 26 May 2024

https://github.com/StarCrossPortal/scalpel

scalpel是一款命令行漏洞扫描工具,支持深度参数注入,拥有一个强大的数据解析和变异算法,可以将常见的数据格式(json, xml, form等)解析为树结构,然后根据poc中的规则,对树进行变异,包括对叶子节点和树结构 的变异。变异完成之后,将树结构还原为原始的数据格式。

cve exploits fuzzing poc scanner vulnerabilities vulnerability

Last synced: 19 May 2024

https://github.com/b4keSn4ke/Invoke-WinSATBypass

Powershell UAC Bypass script leveraging WinSAT.exe

exploit exploitation exploits powershell uac uac-bypass uacbypass windows windows-10

Last synced: 17 May 2024

https://github.com/spencerdodd/kernelpop

kernel privilege escalation enumeration and exploitation framework

enumeration exploits kernel security tools vulnerabilities

Last synced: 14 May 2024

https://github.com/CERTCC/PoC-Exploits

Select proof-of-concept exploits for software vulnerabilities to aid in identifying and testing vulnerable systems.

exploits poc vulnerabilities

Last synced: 12 May 2024

https://github.com/dynatrace-oss/unguard

Unguard is an insecure cloud-native microservices demo application.

cloud-native exploits kubernetes microservices tracing

Last synced: 11 May 2024

https://github.com/The-Art-of-Hacking/h4cker

This repository is primarily maintained by Omar Santos (@santosomar) and includes thousands of resources related to ethical hacking, bug bounties, digital forensics and incident response (DFIR), artificial intelligence security, vulnerability research, exploit development, reverse engineering, and more.

ai ai-security artificial-intelligence awesome-list awesome-lists cybersecurity ethical-hacking exploit exploit-development exploits hacker hackers hacking hacking-series penetration-testing training vulnerability vulnerability-assessment vulnerability-identification vulnerability-management

Last synced: 10 May 2024

https://github.com/smallcham/sec-admin

分布式资产安全扫描核心管理系统(弱口令扫描,漏洞扫描)

exploits infosec python scanner security security-audit vulnerability-scanners

Last synced: 07 May 2024

https://github.com/nicolas-carolo/houndsploit

An advanced graphical search engine for Exploit-DB

exploit-db exploits number-filtering penetration-testing search-engine shellcodes

Last synced: 07 May 2024

https://github.com/CleasbyCode/pdvzip

Embed a ZIP file within a PNG image to create a tweetable and "executable" PNG-ZIP polyglot file.

arbitrary-data cli cybersecurity embedded-files exif exploits flickr linux metadata mp3 mp4 png png-zip polyglot-files powershell python tweetable-polyglot-png twitter x-platform zip

Last synced: 21 Apr 2024

https://github.com/sundaysec/Android-Exploits

A collection of android Exploits and Hacks

android android-architecture dos exploit exploits hacking

Last synced: 18 Apr 2024

https://github.com/rastating/wordpress-exploit-framework

A Ruby framework designed to aid in the penetration testing of WordPress systems.

exploits security security-audit wordpress wordpress-exploit-framework

Last synced: 17 Apr 2024

https://github.com/TH3xACE/SUDO_KILLER

A tool designed to exploit a privilege escalation vulnerability in the sudo program on Unix-like systems. It takes advantage of a specific misconfiguration or flaw in sudo to gain elevated privileges on the system, essentially allowing a regular user to execute commands as the root user.

abuse-sudo ctf cve exploits linux-exploits misconfiguration oscp oscp-journey oscp-prep oscp-tools pentest pentest-tool privilege-escalation sudo sudo-exploitation

Last synced: 17 Apr 2024

https://github.com/x0rz/EQGRP

Decrypted content of eqgrp-auction-file.tar.xz

equationgroup exploits hacking nsa shadowbrokers tao

Last synced: 16 Apr 2024

https://github.com/dark-lbp/isf

ISF(Industrial Control System Exploitation Framework),a exploitation framework based on Python

exploits ics ics-exp ics-poc isf modbus plc scada scapy

Last synced: 14 Apr 2024

https://github.com/nccgroup/featherduster

An automated, modular cryptanalysis tool; i.e., a Weapon of Math Destruction

cryptanalysis crypto cryptography encryption exploit exploitation exploitation-framework exploits python security

Last synced: 14 Apr 2024

https://github.com/GossiTheDog/HiveNightmare

Exploit allowing you to read registry hives as non-admin on Windows 10 and 11

cybersecurity exploits security

Last synced: 13 Apr 2024

https://github.com/tenable/routeros

RouterOS Security Research Tooling and Proof of Concepts

bughunting exploits honeypot poc routeros scanner

Last synced: 11 Apr 2024

https://googleprojectzero.github.io/0days-in-the-wild/

Repository for information about 0-days exploited in-the-wild.

0day exploits vulnerabilities

Last synced: 10 Apr 2024

https://github.com/Spacial/awesome-csirt

Awesome CSIRT is an curated list of links and resources in security and CSIRT daily activities.

awesome awesome-list csirt cve exfiltration exploits malware-analysis pentesting poc reverse-engineering secure-programming security threat-intelligence

Last synced: 06 Apr 2024

https://github.com/ihack4falafel/osee

Collection of things made during my preparation to take on OSEE

exploit-code exploit-development exploit-exercises exploits osee

Last synced: 06 Apr 2024

https://github.com/v-p-b/avpwn

List of real-world threats against endpoint protection software

antivirus endpoint-protection exploits incidents security vulnerability

Last synced: 06 Apr 2024

https://github.com/0xdea/exploits

A handy collection of my public exploits, all in one place.

aix buffer-overflow exploits linux mysql openbsd oracle solaris zyxel

Last synced: 05 Apr 2024

https://github.com/coalfire-research/java-deserialization-exploits

A collection of curated Java Deserialization Exploits

cve deserialization-rce exploits java

Last synced: 05 Apr 2024

https://github.com/1n3/privesc

A collection of Windows, Linux and MySQL privilege escalation scripts and exploits.

bugbounty exploits hacking linux mysql pentesting privesc sql windows

Last synced: 05 Apr 2024

https://github.com/dhn/OSEE

Collection of resources for my preparation to take the OSEE certification.

expert exploitation exploits hevd kernel offensive-security osee preparation resources

Last synced: 26 Mar 2024

https://github.com/NullArray/RootHelper

A Bash script that downloads and unzips scripts that will aid with privilege escalation on a Linux system.

bash enumeration exploits linux privilege-escalation root shellscript

Last synced: 25 Mar 2024

https://github.com/TheRealMrGamz/Bookmarklets

A Bunch Of Cool Bookmarklets That Work At School!

bookmarklet exploits school-hacks securly-bypass

Last synced: 19 Mar 2024

https://github.com/jxy-s/herpaderping

Process Herpaderping proof of concept, tool, and technical deep dive. Process Herpaderping bypasses security products by obscuring the intentions of a process.

antivirus antivirus-evasion exploit exploit-development exploit-framework exploitation exploits process-doppelganging process-herpaderping process-hollowing process-migration security security-vulnerability vulnerability windows windows-10 windows-7 windows-defender

Last synced: 17 Mar 2024

https://github.com/Snawoot/hisilicon-dvr-telnet

PoC materials for article https://habr.com/en/post/486856/

camera dvr exploit exploits nvr poc shell telnet

Last synced: 16 Mar 2024

https://github.com/yuawn/NTU-Computer-Security

台大 計算機安全 - Pwn 簡報、影片、作業題目與解法 - Computer Security Fall 2019 @ CSIE NTU Taiwan

binary-exploitation course csie ctf education exploitation exploits ntu pwn reverse-engineering security

Last synced: 16 Mar 2024

https://github.com/c0rel0ader/east

Exploits and Security Tools Framework 2.0.1

east-framework exploits offensive-security penetration-testing python

Last synced: 16 Mar 2024

https://github.com/semmle/securityexploits

This repo has been migrated to https://github.com/github/security-lab/tree/master/SecurityExploits

exploits ql security vulnerabilities

Last synced: 16 Mar 2024

https://github.com/we1h0/SecurityManageFramwork

Security Manage Framwork is a security management platform for enterprise intranet, which includes asset management, vulnerability management, account management, knowledge base management, security scanning automation function modules, and can be used for internal security management. This platform is designed to help Party A with fewer security personnel, complicated business lines, difficult periodic inspection and low automation to better achieve internal safety management.

exploits infosec pentesting scanner security security-audit vulnerability-assessment vulnerability-detection vulnerability-scanners

Last synced: 16 Mar 2024