Netscylla

Advanced
@netscylla

Opensource repository of scripts, tools and other possibly interesting stuff.

JWT_Hacking. Collection of scripts that aid in penetration testing of JSON Web Tokens

58

super-card. A windows client using libnfc to interface with the Mifare Super-card

27

GBucketDump. Tool for enumerating and exploring data in Google Storage Buckets

7

SocksoverRDP. Socks4/5 proxy over RDP Protocol

5

exploit_me. Very vulnerable ARM application (CTF style exploitation tutorial)

5

whois_search. Small python flask application that uses the whoisxmlapi, to search for whois changes via keyword/domain-name in the last 14 days. Purpose is for threat hunting and brand abuse searches.

4

Ducky-Firmware. Fork of the USB Rubber Ducky Firmware, for further developments

4

Pineapple_Patches. Custom Pineapple Patches

4

Ducky-Encoder. Fork of the USB Rubber Ducky Encoder, for further developments

3

Security-Research. Exploits written by the Rhino Security Labs team

3

blog. netscylla blog

3

chocolateypackages. Application packages for Windows

3

XFLTReaT. XFLTReaT tunnelling framework

3

Terraform-RedTeam. Terraform scripts for building red-team infrastructure on AWS

3

QCSuper. QCSuper is a tool communicating with Qualcomm-based phones and modems, allowing to capture raw 2G/3G/4G radio frames, among other things.

3

netscylla.

3

lme. Logging Made Easy

3

whereis. Python program that mines whois databases for a company name and returns CIDR net-ranges for further investigation.

2

dmarc_or_not_dmarc. A python program to enumerate a list of domains for weak/strong dmarc implementations.

2

termshark. A terminal UI for tshark, inspired by Wireshark

2

smbdoor. Windows kernel backdoor via registering a malicious SMB handler

2

automactc. AutoMacTC: Automated Mac Forensic Triage Collector

2

slack-c2bot. Slack C2bot that executes commands and returns the output.

2

pdf-analysis. docker container for extracting URL's from non-/encrypted PDF's

2

AWS_Scripts. Various AWS Scripts

2

AWSBucketDump. Fork from AWSBucketDump that adds an option to add an organisation name

2

SMBGhost. SMBGhost (CVE-2020-0796) threaded scanner

1

Jupyter_Vulncheck. Collection of Jupyter notebooks to carve out monthy vendor vulnerability information

1

Powershell_Scripts. Various Powershell scripts

1
29
Apply