This is your work, valued
pwn_jenkins. Notes about attacking Jenkins servers
2.1kbloodhound_linux. Ingest openldap data into bloodhound
80mRemoteNG_password_decrypt. Decrypt mRemoteNG passwords
73WindowsPentestCommands. Commands used in Windows penetration tests
54CVE-2020-7931. Hacking Artifactory with server side template injection
51ngp2. ncurses-grep: interactively navigate grep-like results
35linux_backdooring. List of possible Linux backdoors
15DotNetInjector. Inject code into .net applications
14PulseSecure_session_hijacking. Attacking and defending web and VPN session hijacking in Pulse Secure Connect
14ArtifactoryDecryptor. Tool to decrypt Artifactory encrypted secrets
12CVE-2019-6693. Decrypt FortiGate configuration secrets
8javaWebShell. Java WebShell
5findcrypt-yara-autocreate. IDA pro plugin to find crypto constants (and more)
5linux_scan. Shell
3PasteHunter. Scanning pastebin with yara rules
3unix_passwords. List of UNIX functions which accept a password in the commandline.
2stringsearch. Collection of string search algorithms
2informatica_decrypt. Decrypt Informatica 10.4 and 10.5 secrets
2CVE-2020-6364. Remote code execution in CA APM Team Center (Wily Introscope)
2CVE-2017-6913. Details about CVE-2017-6913 - Stored XSS in open-xchange's webmail
2PwnService. Hijack a SYSTEM service to drop a SYSTEM shell to the currently logged in user
2barebox. The barebox bootloader
1gimmecredz. You're a #pentester and you totally pwn that linux box, congrats! Now what? You can launch gimmecredz.sh which will try to extract all passwords from known locations.
1CVE-2018-16987. Details about CVE-2018-16987 - Cleartext storage of TA servers' passwords in Squash TM
1ansible-vault-decrypt. Decrypt Ansible Vault encrypted files
1ngp. Ncurses code parsing tool
1beaglenoob. Introduction to userspace I/O embedded Linux on the BeagleBone
1