This is your work, valued
art-of-packet-crafting-with-scapy. A workshop on Packet Crafting using Scapy.
159censys-enumeration. A script to extract subdomains/emails for a given domain using SSL/TLS certificate dataset on Censys
156domains-from-csp. A script to extract domain names from Content Security Policy(CSP) headers
113slurp. A blazing fast & feature rich Amazon S3 bucket enumerator.
99assets-from-spf. A Python script to parse net blocks & domain names from SPF record
84slurp-old. A tool to enumerate S3 buckets manually or via certstream
83hardware-hacking-for-software-folks.
42datasploit. Utilizing various Open Source Intelligence (OSINT) tools and techniques that we have found to be effective, DataSploit brings them all into one place, correlates the raw data captured and gives the user, all the relevant information about the domain/email/ phone number/person, etc. It allows you to collect relevant information about a target which can expand your attack/defence surface very quickly. Sometimes it might even pluck the low hanging fruits for you without even touching the target and give you quick wins. More documentation here: http://datasploit.readthedocs.io/en/latest/.
32scapy-scripts. A collection of scapy scripts, mostly security stuff.
24nic.in-subdomain-tracker. A repo to track subdomains of nic.in
8python-network-programming. A workshop on network programming using the Python language.
8ctlog-utilities. Quick and dirty utilities I scribbled while digging through Certificate Transparency logs using crt.sh
6Effective-OpenSSH-Client-Usage-Workshop. A workshop on using OpenSSH client suite effectively
5GoI-subdomains-directory. List of subdomains/web apps by Government of India (GoI).
4talks. Collection of slides/presentations from various talk that I have given in the past.
4Hands-On-AWS-Penetration-Testing-with-Kali-Linux. Hands-On AWS Penetration Testing with Kali Linux published by Packt
3pyliners. A collection of Python onliners
2understanding-wmi. Repo for "Understanding WMI" talk given at Null, Bangalore March 10th 2018
2dns-for-penetration-testers-nullblr. DNS for penetration testers talk given at Nullblr June 2017.
2PolarDNS. PolarDNS is a specialized authoritative DNS server suitable for penetration testing and vulnerability research.
2aws-security-workshops. A collection of the latest AWS Security workshops
2dotfiles-old. A collection of personal dotfiles. i3wm, zsh and Dell XPS 13 9350
2python-for-system-administration. A workshop on using Python language for system administration
2yamakira.github.io. personal website/blog - http://disruptivelabs.in
2gato. GitHub Self-Hosted Runner Enumeration and Attack Tool
1frida-workshop. JavaScript
1SSRF_Vulnerable_Lab. This Lab contain the sample codes which are vulnerable to Server-Side Request Forgery attack
1frida-vulncon-workshop. A repo for Frida Vulncon Workshop
1fuzzdb. Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.
1Hacking-with-Go. Golang for Security Professionals
1wireguard-docs. 📖 Unofficial WireGuard Documentation: Setup, Usage, Configuration, and full example setups for VPNs supporting both servers & roaming clients.
1cli. Official Command Line Interface for the IPinfo API (IP geolocation and other types of IP data)
1gitbook. 📝 Modern documentation format and toolchain using Git and Markdown
1protocols-for-penetration-testers. A meta repository to keep track of infomation about series of workshops, titled "Protocols for Penetration Testers"
1AWS-IAM-Privilege-Escalation. A centralized source of all AWS IAM privilege escalation methods released by Rhino Security Labs.
1asn-search-api. A Golang API over MaxMind ASN database
1armpwn. Repository to train/learn memory corruption on the ARM platform.
1insecuredns. insecuredns is a damn vulnerable DNS server to demonstrate common vulnerabilities in DNS implementations
1python-foundations. Online notes for this workshop is available at -
1