Comunidad Pen7esting
https://github.com/Anonimo501/Magma-Osint
El script es bueno, el video de youtube me lo borraron
🔥2👍1
De momento solo se ha montado contenido de Azure: https://discord.gg/5JRzRhyc
Discord
Join the Anonimo501 Discord Server!
Check out the Anonimo501 community on Discord - hang out with 44 other members and enjoy free voice and text chat.
📃 "Cómo buscar vulnerabilidades en SmartContracts, SQL Injection, XSS o bugs Python con ChatGPT" https://www.elladodelmal.com/2023/01/como-buscar-vulnerabilidades-en.html
Elladodelmal
Cómo buscar vulnerabilidades en SmartContracts, SQL Injection, XSS o bugs Python con ChatGPT
Blog personal de Chema Alonso (CDO Telefónica, 0xWord, MyPublicInbox, Singularity Hackers) sobre seguridad, hacking, hackers y Cálico Electrónico.
OWASP API Security 2023:
- Broken object level authorization
- Broken authentication
- Broken object property level authorization
- Unrestricted resource consumption
- Broken function level authorization
- Server side request forgery
- Security misconfiguration
- Lack of protection from authentication threats
- Improper assets management
- Unsafe consumption of APIs
https://github.com/OWASP/API-Security/tree/master/2023/en/src
- Broken object level authorization
- Broken authentication
- Broken object property level authorization
- Unrestricted resource consumption
- Broken function level authorization
- Server side request forgery
- Security misconfiguration
- Lack of protection from authentication threats
- Improper assets management
- Unsafe consumption of APIs
https://github.com/OWASP/API-Security/tree/master/2023/en/src
👍2
Decider: herramienta gratuita para generar informes de MITRE ATT&CK
https://blog.segu-info.com.ar/2023/03/decider-herramienta-gratuita-para.html
https://blog.segu-info.com.ar/2023/03/decider-herramienta-gratuita-para.html
📃 "10 Herramientas esenciales para pentesting en Active Directory – Parte 1 de 2" https://thehackerway.com/2023/01/18/10-herramientas-imprescindibles-para-pentesting-en-active-directory/
📃 "10 Herramientas esenciales para pentesting en Active Directory – Parte 2 de 2" https://thehackerway.com/2023/01/25/10-herramientas-esenciales-para-pentesting-en-active-directory-parte-2-de-2/
🛠 Evil-WinRM https://t.me/seguridadinformatic4/2984
🛠 GhostPack https://t.me/seguridadinformatic4/3708
🛠 CrackMapExec https://t.me/seguridadinformatic4/2659
🛠 ADReaper https://github.com/AidenPearce369/ADReaper
🛠 Certify https://github.com/GhostPack/Certify y Certipy https://github.com/ly4k/Certipy
🛠 BloodHound https://github.com/BloodHoundAD/BloodHound y SilentHound https://github.com/layer8secure/SilentHound
🛠 PingCastle https://www.pingcastle.com/
🛠 Impacket https://github.com/fortra/impacket
🛠 WinPEAS https://github.com/carlospolop/PEASS-ng/tree/master/winPEAS
🛠 Mimikatz https://github.com/gentilkiwi/mimikatz
📃 "10 Herramientas esenciales para pentesting en Active Directory – Parte 2 de 2" https://thehackerway.com/2023/01/25/10-herramientas-esenciales-para-pentesting-en-active-directory-parte-2-de-2/
🛠 Evil-WinRM https://t.me/seguridadinformatic4/2984
🛠 GhostPack https://t.me/seguridadinformatic4/3708
🛠 CrackMapExec https://t.me/seguridadinformatic4/2659
🛠 ADReaper https://github.com/AidenPearce369/ADReaper
🛠 Certify https://github.com/GhostPack/Certify y Certipy https://github.com/ly4k/Certipy
🛠 BloodHound https://github.com/BloodHoundAD/BloodHound y SilentHound https://github.com/layer8secure/SilentHound
🛠 PingCastle https://www.pingcastle.com/
🛠 Impacket https://github.com/fortra/impacket
🛠 WinPEAS https://github.com/carlospolop/PEASS-ng/tree/master/winPEAS
🛠 Mimikatz https://github.com/gentilkiwi/mimikatz
The Hacker Way
10 Herramientas esenciales para pentesting en Active Directory - Parte 1 de 2 - The Hacker Way
Demostración en vídeo de éste post: