Casey Erdmann

Expert
@3ndG4me

Offensive security nerd, researcher, and software developer. I make software and distribute it under @InjectionSoftwareandSecurityLLC

AutoBlue-MS17-010. This is just an semi-automated fully working, no-bs, non-metasploit version of the public exploit code for MS17-010

1.4k

socat. Mirror of the socat source code with pre-built releases for Linux (x64 and x86), Windows (x64 and x86), and MacOS (x64)

324

KaliLists. Repo of all the default wordlists included in Kali. Convienent if you're using something other than Kali.

243

spraygen. Password list generator for password spraying - prebaked with goodies

110

Win10-LPE. The Windows 10 LPE exploit written by SandboxEscaper

109

Offensive-Security-Engineering. Various course materials, scripts, and configurations from my Offensive Security Engineering Course and Book "Red Team Engineering"

91

torphantom. A fork of TorGhost, a little utilitly used to route all traffic through TOR.

53

CVE-2020-3452-Exploit. Just basic scanner abusing CVE-2020-3452 to enumerate the standard files accessible in the Web Directory of the CISCO ASA applicances.

24

AgentSmith. Golang C2 Agent PoC utilizing web and social media paltforms to issue command and control and pasting results to PasteBin

18

BadSalt. A repo containing some stagers and setup scripts for configuring Salt Stack to be a "bad"-ass C2

18

CVE-2016-6415-BenignCertain-Monitor. Re-implementation of VirtueSecurity's benigncertain-monitor

11

binary_exploitation. Notes and goodies to make binary exploitation life easier

9

liferay-xss-7.2.1GA2-poc-report-CVE-2020-7934. Authenticated Stored XSS in LifeRay 7.2.0 GA1 via MyAccountPortlet executed by Search Results

6

Offensive-Security-Programming. Various course materials, scripts, and configurations from my Offensive Security Progamming Course and Book "Red Team Engineering"

6

Gortscanner. Simple port scanner rewritten in go

5

MegaList. Script to build my mega word list

4

spray_wrapper. Wrapper for spray tools that are awesome, but can't count/delay to save their lives

4

ghostcat. Ghostcat LFI PoC

3

AdTran-Personal-Phone-Manager-Vulns. A repository hosting write ups for the 0 days CVE-2021-25679, CVE-2021-25680, and CVE-2021-25681

3

configs. Any nice house keeping/theming dotfiles/configs and setup scripts for things like Bash, Xresources, VIM, and Tmux (etc...)

2

BBS-Website. Website For Black Box Society

2

Simple-Port-Scanner. Simple Port Scanner written in python3

2

WebCTRL-OperatorLocale-Parameter-Reflected-XSS. WebCTRL Reflected XSS Vulnerability in the locale GET Parameter

2

Mongo-Scanner. Simple python script to banner grab a mongodb instance for enum

2

Wallpapers. A collection of my favorite wallpapers

1

3ndG4me.github.io. HTML

1

Font. A collection of my favorite fonts

1

VagrantSec. A repo for any headless VMs that I usually run inside of macOS

1

go_http_network_service. Go

1

3ndG4me-Arch. Some nice notes, scripts, helper files, etc... to make setting up my ideal Arch Linux config ez pz

1

phishlets. Repo of cool Evilginx Phishlets

1
31
Apply