This is your work, valued
Just a french canadien who likes computers.
Cheatsheet-God. Penetration Testing Reference Bank - OSCP / PTP & PTX Cheatsheet
5.6kCTF-Script-And-Template-Thrift-Shop. [180+ scripts] There are a few genuine gems in there. And a lot of spaghetti code. Most of these scripts were for solving CTF's. If you googles something for a CTF and landed here look at the scripts they're all fairly malleable. Sorry for the shitty naming conventions (not really). If you are a recruiter stop. I wont be able to rewrite half this shit in a formal interview ¯\_(ツ)_/¯
62DNSWho. transmit cs beacon (shellcode) over self-made dns to avoid anti-kill and AV
49Auditing-Vulnerabilities. In this repository I'll host my research and methodologies for auditing vulnerabilities
29MyPentestEnviornment_AndTools. My configs, tools and what not. For everytime that I blow up my vm....
18Offensive-Go-Scripts. scripts I make in golang will end up here and notes I took during my study of the language
153CXBasicNotes. Notes From Doing The 3CX Basic Certification
14PyExec. This is a very simple privilege escalation technique, from admin to System. This is the same technique PSExec uses.
13Best-Password-Crackers-LinkDump. All the best password crackers I know and what their for
113CX-Intermediate-Notes. Notes from 3CX Intermediate Certification
11Exploit-Dev-CVE-Code. Exploits developed by me. And scripts I made and use for pentesting / getting bloods on HTB
9cve.
9deprecated-rootkit. Nice FASM src of basic ring 3 rootkit has no more use to me.
9Upload-Go-Fileserver. Fileserver written in Go with a useful upload feature that can be leveraged to transfer file between machines. Has the option to force authentication before accessing.
8cgo_ReflectedDLL. C
5MASM-Silent-Client-Executer-and-Downloader. CreateProcess requires more parameters, so ShellExecute is easier to use.... less to account for then CreateProcess which is why ShelllExecute.
5Authentication_Overflow. template exploit works by corrupting memory to control execution flow. The check_overflow.c program demonstrates this concept.
5OlivierLaflamme.
5atomic-red-team. Small and highly portable detection tests based on MITRE's ATT&CK.
4Linux-Function-Detouring. Here a simple linux detouring class. It should work for x64/x86 architecture. Dont expect me to explain this in an interview
4Burp-Suite-Certified-Practitioner-Exam-Study. Burp Suite Certified Practitioner Exam Study
3NimiDumpWriteDump. Nim
3AntiForensics.
3Assembly-simple-fasm-hook. simple hook [FASM]
3custom_binary_for_reverseshell. custom binary reverseshell in C#
2FilelessPELoader. Loading Remote AES Encrypted PE in memory , Decrypted it and run it
2CTF. CTF Writeups in (.md) well formated with images and explanation / my thoughts.
2flooding-antivirus-softwares-via-functions-by-hash. C
2dyana. A sandbox environment designed for loading, running and profiling a wide range of files, including machine learning models, ELFs, Pickle, Javascript and more
1gophish. Open-Source Phishing Toolkit
1parley. Tree of Attacks (TAP) Jailbreaking Implementation
1WebApp_Test. Made a webapp to have an idea of how they're made
1ContextMenuHijack. Execute a payload at each right click on a file/folder in the explorer menu for persistence
1My-Tools. Python, Perl, Ruby tools I've written.
1CVE-2021-36934-export-shadow-volume-POC. C#
1crawlers-add-whitelist. CDN ranges
1