Burp-Suite-Certified-Practitioner-Exam-Study. Burp Suite Certified Practitioner Exam Study
1.5kPenTestMethodology. A structured, actionable penetration testing methodology and checklist covering end-to-end engagement phases.
31API-Web-Security. API Security University & PortSwigger Academy Study Notes
26CISSP-Studies. CISSP Studies
25mainframe-pentest. Mainframe Penetration Testing
11Active-Directory-PowerShell-Scripts. PowerShell Scripts to aid in Enumeration
11Obfuscating-Techniques-WAF-Bypass. Obfuscating Techniques to bypass WAF detection
9CRTO-Study-Notes. crto-study-notes
9Mobile-App-Pentest. Mobile Application Penetration Testing Setup
6FireWall-Nmap-Scans. Sample NMAP scans targeted at Firewalls and systems behind the Firewalls.
6OSCP-2022. Notes compiled for the OSCP exam.
4Data-Exfiltrate. Using PHP upload page and Windows PowerShell to exfiltrate data
4PayloadsAllTheThings. A list of useful payloads and bypass for Web Application Security and Pentest/CTF
2bypass-cmd-ps1. Windows bypass CMD & PowerShell Restriction
2fake-login-credential-stealer. Fake Windows login page
2GoogleDorks. Google Dork Sample Search Filters
2Pentester-Toolbox. Penetration Testing Toolbox
1Inject-Payload-API-Base64-body. Inject Payload into API that only accept base64 encode POST data
1Map-Server-Relationships. Enumeration Connected Windows Servers
1Breaking-out-LLM. Breaking out LLM constrains and build AI Task Assistant
1BasicDropBox. Red Team Drop-box Assessment Tool - Raspberry Pi
1pentest-practice-list. Practice Practical Penetration Testing Resources
1POST-GET-server. Python3 HTTP server to get log POST and GET requests
1ADTrackUserChanges. AD Track User Changes
1AD-UnAuth-Enum. Active Directory unauthenticated enumeration Bash Script
1Blind-CMD-injection-Test. Testing for blind command injection
1JavaScriptInstaFileDownload. JavaScript with base64 variable value instantly download file
1