This is your work, valued
CVE-2023-27372. SPIP before 4.2.1 allows Remote Code Execution via form values in the public area because serialization is mishandled. The fixed versions are 3.2.18, 4.0.10, 4.1.8, and 4.2.1.
69RedTeaming-Tactics-and-Techniques. Red Teaming Tactics and Techniques
6nuts7.github.io. A blog about security, CTF writeups, researches and more
4GTFOBins.github.io. GTFOBins is a curated list of Unix binaries that can be used to bypass local security restrictions in misconfigured systems
3EDRSandblast. EDRSandBlast is a tool written in C that weaponize a vulnerable signed driver to bypass EDR detections (Notify Routine callbacks, Object Callbacks and ETW TI provider) and LSASS protections. Multiple userland unhooking techniques are also implemented to evade userland monitoring.
3nuclei-templates. Community curated list of templates for the nuclei engine to find security vulnerabilities.
3Unprotect_Submission. Repository to publish your evasion techniques and contribute to the project
2The-Hacker-Recipes. This project is aimed at freely providing technical guides on various hacking topics: Active Directory services, web services, servers, intelligence gathering, physical intrusion, phishing, mobile apps, iot, social engineering, etc.
2PayloadsAllTheThings. A list of useful payloads and bypass for Web Application Security and Pentest/CTF
2SharpCollection. Nightly builds of common C# offensive tools, fresh from their respective master branches built and released in a CDI fashion using Azure DevOps release pipelines.
1VX-API. Collection of various malicious functionality to aid in malware development
1hacktricks. Welcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and news.
1Awesome-GPT-Agents. A curated list of GPT agents for cybersecurity
1Arsenal4BugBounty. Arsenal is just a quick inventory and launcher for bug bounty
1kernsec. Kernsec is quick & dirty script to print kernel protections, useful informations of kernel exploitation/pwn in Kernel Land
1linux-dotfiles. My dotfiles
1