127.0.0.1

PikaChu

Expert
@cyberheartmi9

Security Engineer work as Freelancer Full Time Pentest Web application & Mobile application & code review (Java , php , Python) | OSCE3|OSCP|CRTL|CRTE

CVE-2017-12617. Apache Tomcat < 9.0.1 (Beta) / < 8.5.23 / < 8.0.47 / < 7.0.8 - JSP Upload Bypass / Remote Code Execution

399

PayloadsAllTheThings. HTML

336

Frida-Guide. This repository explain how to write frida hook scripts and analysis written hooks.

88

Proxyshell-Scanner. nuclei scanner for proxyshell ( CVE-2021-34473 )

46

awesome-web-security.

26

CVE-2017-8295. Python

20

Bypassing-Web-Application-Firewalls. Python

9

web-challenge. web challenges

7

Learn-Resource. Resource Learn collection

6

Android-Automatic-MITM-Attack-Script. Python

6

bin_analyzer. Python

5

Practical-Malware-Analysis-Labs.

4

brute-force-secret-key. Script use to detect secret key use to sign cookies

3

security_whitepapers. Collection of misc IT Security related whitepapers, presentations, slides - hacking, bug bounty, web application security, XSS, CSRF, SQLi

3

gef. Multi-Architecture GDB Enhanced Features for Exploit Devs & Reversers

2

awesome-CTF. JavaScript

2

ysoserial.net. C#

2

BypassAV. This map lists the essential techniques to bypass anti-virus and EDR

1

Pre-compile-exp. Pre-compile

1

nuclei-templates. Community curated list of templates for the nuclei engine to find security vulnerabilities.

1

MRF-Practice. a vulnerable android application to practice request forgery.

1

WindowsExploits. Windows exploits, mostly precompiled. Not being updated. Check https://github.com/SecWiki/windows-kernel-exploits instead.

1

OSEP. PEN-300 collection to help you on your exam.

1

SharpGmailC2. Our Friendly Gmail will act as Server and implant will exfiltrate data via smtp and will read commands from C2 (Gmail) via imap protocol

1

Vulnerable-By-Design. Python

1

Path-Scanner. Python

1

python-pickle. Python

1

web-backdoor. Python

1

RedditC2. Abusing Reddit API to host the C2 traffic, since most of the blue-team members use Reddit, it might be a great way to make the traffic look legit.

1

Resources-Front-End-Beginner. The most essential list of resources for Front-End beginners (🇺🇸 🇬🇧 & 🇫🇷)

1

Malware.

1

Mona-Secure-Multi-Owner-Data-Sharing-for-Dynamic-Group-in-the-Cloud. Java

1

LFI-Scanner. Python

1

Active-Directory-Exploitation-Cheat-Sheet. A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.

1
34
Apply