This is your work, valued

France

nuts.

Expert
@nuts7

script kitty

CVE-2023-27372. SPIP before 4.2.1 allows Remote Code Execution via form values in the public area because serialization is mishandled. The fixed versions are 3.2.18, 4.0.10, 4.1.8, and 4.2.1.

69

RedTeaming-Tactics-and-Techniques. Red Teaming Tactics and Techniques

6

nuts7.github.io. A blog about security, CTF writeups, researches and more

4

GTFOBins.github.io. GTFOBins is a curated list of Unix binaries that can be used to bypass local security restrictions in misconfigured systems

3

EDRSandblast. EDRSandBlast is a tool written in C that weaponize a vulnerable signed driver to bypass EDR detections (Notify Routine callbacks, Object Callbacks and ETW TI provider) and LSASS protections. Multiple userland unhooking techniques are also implemented to evade userland monitoring.

3

nuclei-templates. Community curated list of templates for the nuclei engine to find security vulnerabilities.

3

Unprotect_Submission. Repository to publish your evasion techniques and contribute to the project

2

The-Hacker-Recipes. This project is aimed at freely providing technical guides on various hacking topics: Active Directory services, web services, servers, intelligence gathering, physical intrusion, phishing, mobile apps, iot, social engineering, etc.

2

PayloadsAllTheThings. A list of useful payloads and bypass for Web Application Security and Pentest/CTF

2

SharpCollection. Nightly builds of common C# offensive tools, fresh from their respective master branches built and released in a CDI fashion using Azure DevOps release pipelines.

1

VX-API. Collection of various malicious functionality to aid in malware development

1

hacktricks. Welcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and news.

1

Awesome-GPT-Agents. A curated list of GPT agents for cybersecurity

1

Arsenal4BugBounty. Arsenal is just a quick inventory and launcher for bug bounty

1

kernsec. Kernsec is quick & dirty script to print kernel protections, useful informations of kernel exploitation/pwn in Kernel Land

1

linux-dotfiles. My dotfiles

1