Toronto Canada

Boschko

Elite
@OlivierLaflamme

Just a french canadien who likes computers.

Cheatsheet-God. Penetration Testing Reference Bank - OSCP / PTP & PTX Cheatsheet

5.6k

CTF-Script-And-Template-Thrift-Shop. [180+ scripts] There are a few genuine gems in there. And a lot of spaghetti code. Most of these scripts were for solving CTF's. If you googles something for a CTF and landed here look at the scripts they're all fairly malleable. Sorry for the shitty naming conventions (not really). If you are a recruiter stop. I wont be able to rewrite half this shit in a formal interview ¯\_(ツ)_/¯

62

DNSWho. transmit cs beacon (shellcode) over self-made dns to avoid anti-kill and AV

49

Auditing-Vulnerabilities. In this repository I'll host my research and methodologies for auditing vulnerabilities

29

MyPentestEnviornment_AndTools. My configs, tools and what not. For everytime that I blow up my vm....

18

Offensive-Go-Scripts. scripts I make in golang will end up here and notes I took during my study of the language

15

3CXBasicNotes. Notes From Doing The 3CX Basic Certification

14

PyExec. This is a very simple privilege escalation technique, from admin to System. This is the same technique PSExec uses.

13

Best-Password-Crackers-LinkDump. All the best password crackers I know and what their for

11

3CX-Intermediate-Notes. Notes from 3CX Intermediate Certification

11

Exploit-Dev-CVE-Code. Exploits developed by me. And scripts I made and use for pentesting / getting bloods on HTB

9

cve.

9

deprecated-rootkit. Nice FASM src of basic ring 3 rootkit has no more use to me.

9

Upload-Go-Fileserver. Fileserver written in Go with a useful upload feature that can be leveraged to transfer file between machines. Has the option to force authentication before accessing.

8

cgo_ReflectedDLL. C

5

MASM-Silent-Client-Executer-and-Downloader. CreateProcess requires more parameters, so ShellExecute is easier to use.... less to account for then CreateProcess which is why ShelllExecute.

5

Authentication_Overflow. template exploit works by corrupting memory to control execution flow. The check_overflow.c program demonstrates this concept.

5

OlivierLaflamme.

5

atomic-red-team. Small and highly portable detection tests based on MITRE's ATT&CK.

4

Linux-Function-Detouring. Here a simple linux detouring class. It should work for x64/x86 architecture. Dont expect me to explain this in an interview

4

Burp-Suite-Certified-Practitioner-Exam-Study. Burp Suite Certified Practitioner Exam Study

3

NimiDumpWriteDump. Nim

3

AntiForensics.

3

Assembly-simple-fasm-hook. simple hook [FASM]

3

custom_binary_for_reverseshell. custom binary reverseshell in C#

2

FilelessPELoader. Loading Remote AES Encrypted PE in memory , Decrypted it and run it

2

CTF. CTF Writeups in (.md) well formated with images and explanation / my thoughts.

2

flooding-antivirus-softwares-via-functions-by-hash. C

2

dyana. A sandbox environment designed for loading, running and profiling a wide range of files, including machine learning models, ELFs, Pickle, Javascript and more

1

gophish. Open-Source Phishing Toolkit

1

parley. Tree of Attacks (TAP) Jailbreaking Implementation

1

WebApp_Test. Made a webapp to have an idea of how they're made

1

ContextMenuHijack. Execute a payload at each right click on a file/folder in the explorer menu for persistence

1

My-Tools. Python, Perl, Ruby tools I've written.

1

CVE-2021-36934-export-shadow-volume-POC. C#

1

crawlers-add-whitelist. CDN ranges

1
36
Apply