Security Consultant. I do things with kubernetes.
byp4xx. 40X/HTTP bypasser in Go. Features: Verb tampering, headers, #bugbountytips, User-Agents, extensions, default credentials...
1.9kkindscaler. Node Management for KinD Clusters
81awrbacs. AWACS for RBAC. Tool for auditing CRUD permissions in Kubernetes' RBAC.
46lobuhi.github.io. Rebujito is a fork of IppSec.Rocks and serves as a repo for hacking tools and other resources such as vulnerable apps, cheatsheets or methodologies.
9adet. Bash script for DNS file exfiltration using Invoke-DNSteal in server side.
7nanny. Cares the child processes. Bash script to watch and save the whole command of any child process given a PID
7kuball. Multicontext CLI for kubectl. All contexts at once or by keyword.
6BurpSuite_403Bypasser. Burpsuite Extension to bypass 403 restricted directory
4entrophylter. Take the crunch output and filter results for its entropy.
4privilege-escalation-awesome-scripts-suite. PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)
4nginxpwner. Python
3nucleitemplates. My custom nuclei templates
3nuclei-burp-integration. Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.
2kubeaudit. kubeaudit helps you audit your Kubernetes clusters against common security controls
2adventofcode. Just my personal challenge to complete some Advent of Code challenges just using bash script and (eventually) one-liners. #ChatGPT
2HateHunter. HateHunter: Detect Hate Speech on YouTube with AI
2Hack-Comands. Compilation of commands for hacking tasks and security tools as a bit of everything
2openvpn-install. Set up your own OpenVPN server on Debian, Ubuntu, Fedora, CentOS or Arch Linux.
2kubetools. Kubetools - Curated List of Kubernetes Tools
1policies. Kyverno policies for security and best practices
1operator. Kubernetes operator for installing Calico and Calico Enterprise
1auger. Directly access data objects stored in etcd by kubernetes.
1SecLists. SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.
1harpoon. A collection of scripts, and tips and tricks for hacking k8s clusters and containers.
1ntlm_bruter. Bruteforce NTLM HTTP authentication. This fork uses a single list in user:passwd format.
1entropy. shannon entropy
1rtl8821CU. Realtek RTL8811CU/RTL8821CU USB Wi-Fi adapter driver for Linux
1dnsteal. DNS Exfiltration tool for stealthily sending files over DNS requests.
1elastalert. Easy & Flexible Alerting With ElasticSearch
1Mitigating-Web-Shells. Guidance for mitigation web shells. #nsacyber
1pytm. A Pythonic framework for threat modeling
1