ann arbor, mi

jose nazario

Elite
@paralax

cybersecurity, threat intel, cooking, biochemistry.

awesome-honeypots. an awesome list of honeypot resources

10k

awesome-cybersecurity-internships. a list of cybersecurity internships

583

lfi-labs. small set of PHP scripts to practice exploiting LFI, RFI and CMD injection vulns

334

awesome-internet-scanning. A curated list of awesome Internet port and host scanners, plus related components and much more, with a focus on free and open source projects.

240

Awesome-Pentest-1. Awesome Penetration Testing A collection of awesome penetration testing resources

66

xss-labs. small set of scripts to practice exploit XSS and CSRF vulnerabilities

65

ObsidianSailboat. Nmap and NSE command line wrapper in the style of Metasploit

43

BurningDogs. Honeypot log processor to create OTX Pulse entries

28

Recon-ng. personal fork of OSINT tool recon-ng

15

bibtex2word. processes Bibtex files, produces Word Source.xml output

10

ColossalOpera. reddit daily_programmer challenge ideas

9

ShoppingLeague. wordpress honeypot

8

HorribleCanoe. yara rules

8

Recon-ng-modules. Additional modules for recon-ng

8

deepdarkCTI. Collection of Cyber Threat Intelligence sources from the deep and dark web

6

BrassGlue. codename/mascot generator, also good for band names

6

matrixdump. network traffic dump in the style of the Matrix movies

4

libfenc. functional encryption library. Automatically exported from code.google.com/p/libfenc

4

leadership. A public compilation of Webflow's documentation that outlines how we practice servant leadership and the management strategies that follow.

3

Damn-Vulnerable-Bank. Vulnerable Banking Application for Android

3

connlogger. simple server-side connection logger, useful as a simple honeypot

3

Penetration-Testing-Study-Notes. Penetration Testing notes, resources and scripts

3

phpsploit. Stealth post-exploitation framework

3

pyfastbit. Python bindings for FastBit

2

awesome-pentest-cheat-sheets. Collection of the cheat sheets useful for pentesting

2

chaps. Configuration Hardening Assessment PowerShell Script (CHAPS)

2

scans. Cloud security configuration checks

2

punymud. A compact MUD framework written in Python and YAML

2

awesome-competitive-programming. :gem: A curated list of awesome Competitive Programming, Algorithm and Data Structure resources

2

Sn1per. Automated pentest framework for offensive security experts

2

exploits. Some of my public exploits

2

pentest. :no_entry: offsec batteries included

2

windows_hardening. Windows Hardening settings and configurations

2

advance-update. Advance Update in a Elasticsearch plugin that provides you control over the document update functionality of elasticsearch.

2

kerbrute. A tool to perform Kerberos pre-auth bruteforcing

1

CitrixHoneypot. Detect and log CVE-2019-19781 scan and exploitation attempts.

1

WhatWeb. Next generation web scanner

1

dronesploit. Drone pentesting framework console

1

CyBot. Open Source Threat Intelligence Chat Bot

1

Katana. A Python Tool For google Hacking

1

bing-ip2hosts. bingip2hosts is a Bing.com web scraper that discovers websites by IP address

1

Sooty. The SOC Analysts all-in-one CLI tool to automate and speed up workflow.

1

AzureADLateralMovement. Lateral Movement graph for Azure Active Directory

1

PIE. :mailbox: The Phishing Intelligence Engine - An Active Defense PowerShell Framework for Phishing Defense with Office 365

1

aws_pwn. A collection of AWS penetration testing junk

1

recog-go. Recog-Go: Pattern Recognition using Rapid7 Recog

1

ATFuzzer. "Opening Pandora's Box through ATFuzzer: Dynamic Analysis of AT Interface for Android Smartphones" ACSAC 2019

1

Loki. Loki - Simple IOC and Incident Response Scanner

1

paradoxiaRAT. ParadoxiaRat : Native Windows Remote access Tool.

1

RedELK. Red Team's SIEM - easy deployable tool for Red Teams used for tracking and alarming about Blue Team activities as well as better usability in long term operations.

1

routersploit. Exploitation Framework for Embedded Devices

1

Java-Deserialization-Cheat-Sheet. The cheat sheet about Java Deserialization vulnerabilities

1

scancode-toolkit. :mag_right: ScanCode scans code and detects licenses, copyrights, package manifests & dependencies and more ... to discover and inventory open source and third-party packages used in your code.

1

awesome-test-automation-pasteBinRead. A curated list of awesome test automation frameworks, tools, libraries, and software for different programming languages

1

blockchain-for-software-engineers. A curated list of resources for blockchain engineers

1

tabler. Tabler - Free HTML Dashboard Theme Built On Bootstrap 4

1

ClassyBadger. simple "oops" util to fix the previous shell command

1
57
Apply