This is your work, valued
Security Engineer work as Freelancer Full Time Pentest Web application & Mobile application & code review (Java , php , Python) | OSCE3|OSCP|CRTL|CRTE
CVE-2017-12617. Apache Tomcat < 9.0.1 (Beta) / < 8.5.23 / < 8.0.47 / < 7.0.8 - JSP Upload Bypass / Remote Code Execution
399PayloadsAllTheThings. HTML
336Frida-Guide. This repository explain how to write frida hook scripts and analysis written hooks.
88Proxyshell-Scanner. nuclei scanner for proxyshell ( CVE-2021-34473 )
46awesome-web-security.
26CVE-2017-8295. Python
20Bypassing-Web-Application-Firewalls. Python
9web-challenge. web challenges
7Learn-Resource. Resource Learn collection
6Android-Automatic-MITM-Attack-Script. Python
6bin_analyzer. Python
5Practical-Malware-Analysis-Labs.
4brute-force-secret-key. Script use to detect secret key use to sign cookies
3security_whitepapers. Collection of misc IT Security related whitepapers, presentations, slides - hacking, bug bounty, web application security, XSS, CSRF, SQLi
3gef. Multi-Architecture GDB Enhanced Features for Exploit Devs & Reversers
2awesome-CTF. JavaScript
2ysoserial.net. C#
2BypassAV. This map lists the essential techniques to bypass anti-virus and EDR
1Pre-compile-exp. Pre-compile
1nuclei-templates. Community curated list of templates for the nuclei engine to find security vulnerabilities.
1MRF-Practice. a vulnerable android application to practice request forgery.
1WindowsExploits. Windows exploits, mostly precompiled. Not being updated. Check https://github.com/SecWiki/windows-kernel-exploits instead.
1OSEP. PEN-300 collection to help you on your exam.
1SharpGmailC2. Our Friendly Gmail will act as Server and implant will exfiltrate data via smtp and will read commands from C2 (Gmail) via imap protocol
1Vulnerable-By-Design. Python
1Path-Scanner. Python
1python-pickle. Python
1web-backdoor. Python
1RedditC2. Abusing Reddit API to host the C2 traffic, since most of the blue-team members use Reddit, it might be a great way to make the traffic look legit.
1Resources-Front-End-Beginner. The most essential list of resources for Front-End beginners (🇺🇸 🇬🇧 & 🇫🇷)
1Malware.
1Mona-Secure-Multi-Owner-Data-Sharing-for-Dynamic-Group-in-the-Cloud. Java
1LFI-Scanner. Python
1Active-Directory-Exploitation-Cheat-Sheet. A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.
1