TryHackMe_and_HackTheBox. PHP
256cyber-security-books. A collection of cyber security books
5ivpn_osiris. testing
3PayloadsAllTheThings. A list of useful payloads and bypass for Web Application Security and Pentest/CTF
2Awesome. Awesome collection of resources 😎 Work in progress🔥
2deepdarkCTI. Collection of Cyber Threat Intelligence sources from the deep and dark web
1game-hacking. Tutorials, tools, and more as related to reverse engineering video games.
1Galaxy-Bugbounty-Checklist. Tips and Tutorials for Bug Bounty and also Penetration Tests.
1Cyber-Security-Resources.
1puppeteer. Headless Chrome Node.js API
1swagger-ui. Swagger UI is a collection of HTML, JavaScript, and CSS assets that dynamically generate beautiful documentation from a Swagger-compliant API.
1BISOGD. Boosting Internet Security with Osint and Google Dorking
1twine. Utilities for interacting with PyPI
1droopescan. A plugin-based scanner that aids security researchers in identifying issues with several CMSs, mainly Drupal & Silverstripe.
1runner-images. GitHub Actions runner images
1hackerone-reports. Top disclosed reports from HackerOne
1ctf-writeups. Write-ups of the vulnhub VMs I have done, and interesting TryHackMe rooms
1Tor-IP-Changer. A tool for automatically change the Tor IP address over time.
1BugBountyBooks. A collection of PDF/books about the modern web application security and bug bounty.
1Offensive-Payloads. List of payloads and wordlists that are specifically crafted to identify and exploit vulnerabilities in target web applications.
1LocalPotato. C++
1redteam-research. Collection of PoC and offensive techniques used by the BlackArrow Red Team
1hashclash. Project HashClash - MD5 & SHA-1 cryptanalysis
1github-slideshow. A robot powered training repository :robot:
1Hack-Tools. The all-in-one Red Team extension for Web Pentester 🛠
1MalwareSourceCode. Collection of malware source code for a variety of platforms in an array of different programming languages.
1EyeWitness. EyeWitness is designed to take screenshots of websites, provide some server header info, and identify default credentials if possible.
1awesome-for-beginners. A list of awesome beginners-friendly projects.
1BloodHound. Six Degrees of Domain Admin
1cowrie. Cowrie SSH/Telnet Honeypot https://cowrie.readthedocs.io
1AMSI-Holo.
1merlin. Merlin is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in golang.
1donut. Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs them with parameters
1github-search. A collection of tools to perform searches on GitHub.
1mbc-markdown. MBC content in markdown
1MRZT721010.github.io. A website to introduce myself...
1GTFOBins.github.io. GTFOBins is a curated list of Unix binaries that can be used to bypass local security restrictions in misconfigured systems
1Certipy. Tool for Active Directory Certificate Services enumeration and abuse
1Amass. In-depth Attack Surface Mapping and Asset Discovery
1fail2ban. Daemon to ban hosts that cause multiple authentication errors
1chisel. A fast TCP/UDP tunnel over HTTP
1metasploit-framework. Metasploit Framework
1PakCyberbot. My Profile
1flare-vm. PowerShell
1Mobile-Security-Framework-MobSF. Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.
1