This is your work, valued
Don't Ask..
RootKits-List-Download. This is the list of all rootkits found so far on github and other sites.
★ 1.5kPoorMan-s-Rubber-Ducky. Leonardo-Arduino script and python keylogger for BAD-USB aka Poor Man's RUBBER-DUCKY
★ 12Awesome-Fuzzing. A curated list of fuzzing resources ( Books, courses - free and paid, videos, tools, tutorials and vulnerable applications to practice on ) for learning Fuzzing and initial phases of Exploit Development like root cause analysis.
★ 3Infosec_Reference. Information Security Reference That Doesn't Suck
★ 3hexstrike-ai. HexStrike AI MCP Agents is an advanced MCP server that lets AI agents (Claude, GPT, Copilot, etc.) autonomously run 150+ cybersecurity tools for automated pentesting, vulnerability discovery, bug bounty automation, and security research. Seamlessly bridge LLMs with real-world offensive security capabilities.
★ 2init.sh. Shell
★ 2krackattacks-test-ap-ft. Appreciate security researcher. Use at your own risk.
★ 2exploit-database-bin-sploits. Exploit Database binary exploits located in the /sploits directory
★ 2security-cheatsheets. A collection of cheatsheets for various infosec tools and topics.
★ 2exploits. Miscellaneous exploit code
★ 2My-Lib-Books. My Library about Technical Books
★ 1ATTCK-PenTester-Book. ATTCK-PenTester-Book
★ 1PrivEsc. A collection of Windows, Linux and MySQL privilege escalation scripts and exploits.
★ 1SecLists. SecLists is the security tester's companion. It is a collection of multiple types of lists used during security assessments. List types include usernames, passwords, URLs, sensitive data grep strings, fuzzing payloads, and many more.
★ 1pentest-ai. Offensive-security MCP server with 205 wrapped tools, 17 specialist agents, and 60 SPA-aware probes for OWASP Top 10. CLI + MCP, BYO LLM. No API key needed on MCP path.
★ 1.5krecon-skills. An evolving recon & pentest skill pack. CORS, XSS, SQLi, SSRF, RCE, WordPress, MCP, cloud, subdomain takeover, and more. Field-tested. MIT. Full write-up at hiago.sh
★ 1kCyberStrike. Open-source AI-augmented offensive security harness. 13+ autonomous agents, 150+ LLM providers, 5,300+ models, 7,600+ Ed25519-signed attack skills, 56+ built-in tools, 176+ MCP tools. MITRE ATT&CK, OWASP WSTG, CIS Benchmarks. Post-exploit: Linux/Windows/macOS/AWS/Azure/K8s/CI-CD. Web UI + Cloudflare Tunnel. Your AI red team.
★ 1.3kAI-For-Beginners. 12 Weeks, 24 Lessons, AI for All!
★ 54kgarak. the LLM vulnerability scanner
★ 8.6khexstrike-ai. HexStrike AI MCP Agents is an advanced MCP server that lets AI agents (Claude, GPT, Copilot, etc.) autonomously run 150+ cybersecurity tools for automated pentesting, vulnerability discovery, bug bounty automation, and security research. Seamlessly bridge LLMs with real-world offensive security capabilities.
★ 11kNimPlant. A light-weight first-stage C2 implant written in Nim (and Rust).
★ 950GIUDA. Ask a TGS on behalf of another user without password
★ 481hoaxshell. A Windows reverse shell payload generator and handler that abuses the http(s) protocol to establish a beacon-like reverse shell.
★ 3.5kAwesome-RCE-techniques. Awesome list of step by step techniques to achieve Remote Code Execution on various apps!
★ 1.9kCVE-2019-3980. Python
★ 18api_wordlist. A wordlist of API names for web application assessments
★ 921adfsbrute. A script to test credentials against Active Directory Federation Services (ADFS), allowing password spraying or bruteforce attacks.
★ 182password-list. Password lists with top passwords to optimize bruteforce attacks
★ 409WinPwn. Automation for internal Windows Penetrationtest / AD-Security
★ 3.7kRecon. Recon is a script to perform a full recon on a target with the main tools to search for vulnerabilities. Created based on @ofjaaah and @Jhaddix methodologies
★ 222GitTools. A repository with 3 tools for pwn'ing websites with .git repositories available
★ 4.2kgitleaks. Find secrets with Gitleaks 🔑
★ 28kAlternativeShellcodeExec. Alternative Shellcode Execution Via Callbacks
★ 1.7kOSINT-SAN. OSINT-SAN Framework дает возможность быстро находить информацию и деанонимизировать пользователей сети интернет.
★ 609HowToHunt. Collection of methodology and test case for various web vulnerabilities.
★ 7.2kdegoogle. search Google and extract results directly. skip all the click-through links and other sketchiness
★ 505restler-fuzzer. RESTler is the first stateful REST API fuzzing tool for automatically testing cloud services through their REST APIs and finding security and reliability bugs in these services.
★ 2.9kPowerShell-Red-Team. Collection of PowerShell functions a Red Teamer may use in an engagement
★ 550awesome-privilege-escalation. A curated list of awesome privilege escalation
★ 1.6kBypassAV. Cobalt Strike插件,用于快速生成免杀的可执行文件
★ 906ConPtyShell. ConPtyShell - Fully Interactive Reverse Shell for Windows
★ 1.2kAwesome-CobaltStrike. List of Awesome CobaltStrike Resources
★ 4.4kIoT-PT-v1. A Virtual environment for Pentesting IoT Devices
★ 445OSCPRepo. A list of commands, scripts, resources, and more that I have gathered and attempted to consolidate for use as OSCP (and more) study material. Commands in 'Usefulcommands' Keepnote. Bookmarks and reading material in 'BookmarkList' CherryTree. Reconscan Py2 and Py3. Custom ISO building.
★ 2.7kdnSpy. .NET debugger and assembly editor
★ 30kNetLoader. Loads any C# binary in mem, patching AMSI + ETW.
★ 850Buffer-Overflow-Exploit-Development-Practice. Good For OSCP Training
★ 445shad0w. A post exploitation framework designed to operate covertly on heavily monitored environments
★ 2.2kMacrome. Excel Macro Document Reader/Writer for Red Teamers & Analysts
★ 522amass. In-depth attack surface mapping and asset discovery
★ 15kMBE. Course materials for Modern Binary Exploitation by RPISEC
★ 6kh4cker. This repository is maintained by Omar Santos (@santosomar) and includes thousands of resources related to ethical hacking, bug bounties, digital forensics and incident response (DFIR), AI security, vulnerability research, exploit development, reverse engineering, and more. 🔥 Also check: https://hackertraining.org
★ 29kOSCE. Collection of Windows usermode exploits targeting various third-party software applications, these exploits were written in preparation for the Offsec CTP/OSCE certification
★ 143malware-samples. Malware samples, analysis exercises and other interesting resources.
★ 1.7kcobalt-arsenal. My collection of battle-tested Aggressor Scripts for Cobalt Strike 4.0+
★ 1.1kcommix. Automated All-in-One OS Command Injection Exploitation Tool
★ 5.8kPhantom-Evasion. Python antivirus evasion tool
★ 1.4keBook-BypassingAVsByCSharp. eBook "Bypassing AVS by C#.NET Programming" (Free Chapters only)
★ 467UACME. Defeating Windows User Account Control
★ 7.7kInvisi-Shell. Hide your Powershell script in plain sight. Bypass all Powershell security features
★ 1.3kpwndrop. Self-deployable file hosting service for red teamers, allowing to easily upload and share payloads over HTTP and WebDAV.
★ 2.3kRedTeamCSharpScripts. C# Script used for Red Team
★ 716ebfuscator. Ebfuscator: Abusing system errors for binary obfuscation
★ 53PowerSharpPack. PowerShell
★ 1.7kMalleable-C2-Profiles. Cobalt Strike - Malleable C2 Profiles. A collection of profiles used in different projects using Cobalt Strike https://www.cobaltstrike.com/.
★ 888RedTeamTools. 记录自己编写、修改的部分工具
★ 1.5kWhiteListEvasion. Collection of scripts, binaries and the like to aid in WhiteList Evasion on a Microsoft Windows Network.
★ 128at-ps. Adversary Tactics - PowerShell Training
★ 1.6kCVE-2020-0796. CVE-2020-0796 - Windows SMBv3 LPE exploit #SMBGhost
★ 1.4kC2concealer. C2concealer is a command line tool that generates randomized C2 malleable profiles for use in Cobalt Strike.
★ 1.1kCobaltStrike-ToolKit. Some useful scripts for CobaltStrike
★ 855Penetration_Testing_POC. 渗透测试有关的POC、EXP、脚本、提权、小工具等---About penetration-testing python-script poc getshell csrf xss cms php-getshell domainmod-xss csrf-webshell cobub-razor cve rce sql sql-poc poc-exp bypass oa-getshell cve-cms
★ 7.4kpacu. The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.
★ 5.3kZSC. OWASP ZSC - Shellcode/Obfuscate Code Generator https://www.secologist.com/
★ 651Invoke-SharpLoader. PowerShell
★ 360Http-Asynchronous-Reverse-Shell. [POC] Asynchronous reverse shell using the HTTP protocol.
★ 272can-i-take-over-xyz. "Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.
★ 5.8kvmware-exploitation. A collection of links related to VMware escape exploits
★ 1.5kwindows-php-reverse-shell. Simple php reverse shell implemented using binary .
★ 446Hashcat-Cheatsheet. Hashcat Cheatsheet for OSCP
★ 629Active-Directory-Exploitation-Cheat-Sheet. A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.
★ 6.7klazy_nessus. If you deal with PCI or have a need to extract periodically scheduled scan report from nessus, then this tool can do this for you while you can focus on other things rather than clicking on same UI every time.
★ 2awesome-industrial-control-system-security. A curated list of resources related to Industrial Control System (ICS) security.
★ 2kMS17-010. MS17-010
★ 2.3kOSCE_BIBLE. A collection of OSCE preparation resources.
★ 24ATTCK-PenTester-Book. ATTCK-PenTester-Book
★ 1.2kPEASS-ng. PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)
★ 20kCurveBall. PoC for CVE-2020-0601- Windows CryptoAPI (Crypt32.dll)
★ 888RedELK. Red Team's SIEM - tool for Red Teams used for tracking and alarming about Blue Team activities as well as better usability in long term operations.
★ 2.7kSharpLocker. C#
★ 615StageStrike. Custom Cobalt Strike stagers using different methods of thread execution and memory allocation
★ 110Red-Team-Infrastructure-Wiki. Wiki to collect Red Team infrastructure hardening resources
★ 4.5kphysical-docs. This is a collection of legal wording and documentation used for physical security assessments. The goal is to hopefully allow this as a template for other companies to use and to protect themselves when conducting physical security assessments.
★ 496One-Lin3r. Gives you one-liners that aids in penetration testing operations, privilege escalation and more
★ 1.8kCVE-2019-19781. CVE-2019-19781 - Remote Code Execution on Citrix ADC Netscaler exploit
★ 158cve-2019-19781. This is a tool published for the Citrix ADC (NetScaler) vulnerability. We are only disclosing this due to others publishing the exploit code first.
★ 573Awesome-Hacking. A collection of various awesome lists for hackers, pentesters and security researchers
★ 117kCVE-2019-1215. C++
★ 149Empire. Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.
★ 5.2kNuages. A modular C2 framework
★ 542SysWhispers. AV/EDR evasion via direct system calls.
★ 2kPython-Rootkit. Python Remote Administration Tool (RAT) to gain meterpreter session
★ 638awesome-shodan-queries. 🔍 A collection of interesting, funny, and depressing search queries to plug into shodan.io 👩💻
★ 7.6kAPT_REPORT. Interesting APT Report Collection And Some Special IOCs
★ 3.1kOSCP. Collection of things made during my OSCP journey
★ 959linux-microsoft-ie-virtual-machines. Run Internet Explorer 8/9/10/11/MS-Edge Virtual machines from Microsoft under Linux via VirtualBox.
★ 1katomic-red-team. Small and highly portable detection tests based on MITRE's ATT&CK.
★ 12kUltimateAppLockerByPassList. The goal of this repository is to document the most common techniques to bypass AppLocker.
★ 2.1kRed-Teaming-Toolkit. This repository contains cutting-edge open-source security tools (OST) for a red teamer and threat hunter.
★ 11kPayloadsAllTheThings. A list of useful payloads and bypass for Web Application Security and Pentest/CTF
★ 80kKeylogger. A simple keylogger for Windows, Linux and Mac
★ 2.4kSerpico. SimplE RePort wrIting and COllaboration tool
★ 1.1kRE-iOS-Apps. A completely free, open source and online course about Reverse Engineering iOS Applications.
★ 2.9kthe-book-of-secret-knowledge. A collection of inspiring lists, manuals, cheatsheets, blogs, hacks, one-liners, cli/web tools and more.
★ 236ko365-attack-toolkit. A toolkit to attack Office365
★ 1.1kCVE-2017-11882-metasploit. This is a Metasploit module which exploits CVE-2017-11882 using the POC released here : https://embedi.com/blog/skeleton-closet-ms-office-vulnerability-you-didnt-know-about.
★ 98OSCP-stuff. Where I'll be posting my scripts, guides, cheatsheets, and notes for for my OSCP journey.
★ 34Awesome-Red-Teaming. List of Awesome Red Teaming Resources
★ 2Privilege-Escalation. This cheasheet is aimed at the CTF Players and Beginners to help them understand the fundamentals of Privilege Escalation with examples.
★ 3.6kShellPop. Pop shells like a master.
★ 1.5kfuxploider. File upload vulnerability scanner and exploitation tool.
★ 3.3kSalsa-tools. Salsa Tools - ShellReverse TCP/UDP/ICMP/DNS/SSL/BINDTCP/Shellcode/SILENTTRINITY and AV bypass, AMSI patched
★ 587Amsi-Bypass-Powershell. This repo contains some Amsi Bypass methods i found on different Blog Posts.
★ 2.2kWindows-RCE-exploits. The exploit samples database is a repository for **RCE** (remote code execution) exploits and Proof-of-Concepts for **WINDOWS**, the samples are uploaded for education purposes for red and blue teams.
★ 747CVE-2017-12615. POC Exploit for Apache Tomcat 7.0.x CVE-2017-12615 PUT JSP vulnerability.
★ 112public-pentesting-reports. A list of public penetration test reports published by several consulting firms and academic security groups.
★ 9.7kSharpShooter. Payload Generation Framework
★ 2kmole. CLI application to create ssh tunnels focused on resiliency and user experience.
★ 1.7kLOLBAS. Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)
★ 8.7kPrivEsc. A collection of Windows, Linux and MySQL privilege escalation scripts and exploits.
★ 995CrackMapExec. A swiss army knife for pentesting networks
★ 9.2kLaZagne. Credentials recovery project
★ 11k3proxy. 3proxy - tiny free proxy server
★ 5.4kMalleable-C2-Profiles. Malleable C2 is a domain specific language to redefine indicators in Beacon's communication. This repository is a collection of Malleable C2 profiles that you may use. These profiles work with Cobalt Strike 3.x.
★ 1.6kMalleable-C2-Randomizer. A script to randomize Cobalt Strike Malleable C2 profiles and reduce the chances of flagging signature-based detection controls
★ 454AggressorScripts. Collection of Aggressor scripts for Cobalt Strike 3.0+ pulled from multiple sources
★ 1.5kEmpire. Empire is a PowerShell and Python post-exploitation agent.
★ 7.9kmetasploit-framework. Metasploit Framework
★ 39kunicorn. Unicorn is a simple tool for using a PowerShell downgrade attack and inject shellcode straight into memory. Based on Matthew Graeber's powershell attacks and the powershell bypass technique presented by David Kennedy (TrustedSec) and Josh Kelly at Defcon 18.
★ 3.9kptf. The Penetration Testers Framework (PTF) is a way for modular support for up-to-date tools.
★ 5.5kdnscat2. PHP
★ 3.9klinux. Linux kernel source tree
★ 241ksmali. smali/baksmali
★ 6.6kC0F3. C0F3 is a Jailbreak for 10.0 - 10.3.3 & 11.0 - 11.1.2
★ 102idb. idb is a tool to simplify some common tasks for iOS pentesting and research
★ 956Introspy-iOS. Security profiling for blackbox iOS
★ 740viproy-voipkit. VIPROY - VoIP Pen-Test Kit for Metasploit Framework
★ 420android-ssl-bypass. Black box tool to bypass SSL verification on Android, even when pinning is used.
★ 336classdump-dyld. Class-dump any Mach-o file without extracting it from dyld_shared_cache
★ 619Keychain-Dumper. A tool to check which keychain items are available to an attacker once an iOS device has been jailbroken
★ 1.4kkrackattacks-scripts. C
★ 3.5kpth-toolkit. Modified version of the passing-the-hash tool collection made to work straight out of the box
★ 616Infosec_Reference. An Information Security Reference That Doesn't Suck; https://rmusser.net/git/admin-2/Infosec_Reference for non-MS Git hosted version.
★ 6kmona. Corelan Repository for mona.py
★ 1.9kAwesome-Fuzzing. A curated list of fuzzing resources ( Books, courses - free and paid, videos, tools, tutorials and vulnerable applications to practice on ) for learning Fuzzing and initial phases of Exploit Development like root cause analysis.
★ 5.9kdirtycow.github.io. Dirty COW
★ 3.5k