#info
#Analytics
Awesome Annual Security Reports
https://github.com/jacobdjwilson/awesome-annual-security-reports
#Analytics
Awesome Annual Security Reports
https://github.com/jacobdjwilson/awesome-annual-security-reports
Like_comment_scammed.pdf
901.2 KB
#Research
"Like, Comment, Get Scammed: Characterizing Comment Scams on Media Platforms", 2024.
]-> https://github.com/like-comment-get-scammed/like-comment-get-scammed.github.io/tree/main/code
"Like, Comment, Get Scammed: Characterizing Comment Scams on Media Platforms", 2024.
]-> https://github.com/like-comment-get-scammed/like-comment-get-scammed.github.io/tree/main/code
#exploit
1. CVE-2024-42758:
Dokuwiki (indexmenu plugin) XSS
https://github.com/1s1ldur/CVE-2024-42758
2. CVE-2024-36877:
SMM Memory Corruption in MSI firmware
https://jjensn.com/at-home-in-your-firmware
1. CVE-2024-42758:
Dokuwiki (indexmenu plugin) XSS
https://github.com/1s1ldur/CVE-2024-42758
2. CVE-2024-36877:
SMM Memory Corruption in MSI firmware
https://jjensn.com/at-home-in-your-firmware
#tools
#Offensive_security
1. Loading BOF on Linux
https://github.com/trustedsec/ELFLoader
2. Ransomware Tool Matrix
https://github.com/BushidoUK/Ransomware-Tool-Matrix
#Offensive_security
1. Loading BOF on Linux
https://github.com/trustedsec/ELFLoader
2. Ransomware Tool Matrix
https://github.com/BushidoUK/Ransomware-Tool-Matrix
CalcuLatency.pdf
1.3 MB
#Research
"CalcuLatency: Leveraging Cross-Layer Network Latency Measurements to Detect Proxy-Enabled Abuse", 2024.
]-> https://github.com/censoredplanet/calculatency-code
"CalcuLatency: Leveraging Cross-Layer Network Latency Measurements to Detect Proxy-Enabled Abuse", 2024.
]-> https://github.com/censoredplanet/calculatency-code
#exploit
1. CVE-2024-7646:
Ingress-NGINX Annotation Validation Bypass
https://www.armosec.io/blog/cve-2024-7646-ingress-nginx-annotation-validation-bypass
2. CVE-2024-38856:
Apache OFBiz Pre-Authentication RCE (Scanner + Exploit)
https://github.com/securelayer7/CVE-2024-38856_Scanner
1. CVE-2024-7646:
Ingress-NGINX Annotation Validation Bypass
https://www.armosec.io/blog/cve-2024-7646-ingress-nginx-annotation-validation-bypass
2. CVE-2024-38856:
Apache OFBiz Pre-Authentication RCE (Scanner + Exploit)
https://github.com/securelayer7/CVE-2024-38856_Scanner
#tools
#Blue_Team_Techniques
1. ShellSweepX - ML-powered web shell detection and analysis platform
https://github.com/splunk/ShellSweep/wiki/ShellSweepX
2. CVE-2024-38063 mitigation script by disabling ipv6 of all interfaces
https://github.com/diegoalbuquerque/CVE-2024-38063
#Blue_Team_Techniques
1. ShellSweepX - ML-powered web shell detection and analysis platform
https://github.com/splunk/ShellSweep/wiki/ShellSweepX
2. CVE-2024-38063 mitigation script by disabling ipv6 of all interfaces
https://github.com/diegoalbuquerque/CVE-2024-38063
#DFIR
1. DFIR PowerShell Script
https://github.com/joeavanzato/RetrievIR
2. Shellcode Delivered Through PowerShell/Python
https://isc.sans.edu/diary/Do+you+Like+Donuts+Here+is+a+Donut+Shellcode+Delivered+Through+PowerShellPython/31182
1. DFIR PowerShell Script
https://github.com/joeavanzato/RetrievIR
2. Shellcode Delivered Through PowerShell/Python
https://isc.sans.edu/diary/Do+you+Like+Donuts+Here+is+a+Donut+Shellcode+Delivered+Through+PowerShellPython/31182
#exploit
1. CVE-2024-3183:
Kerberos FreeIPA Rosting - Use of Psw Hash With Insufficient Computational Effort
https://github.com/Cyxow/CVE-2024-3183-POC
2. CVE-2024-33895:
Use of Hard-coded Cryptographic Key in
https://seclists.org/fulldisclosure/2024/Aug/22
1. CVE-2024-3183:
Kerberos FreeIPA Rosting - Use of Psw Hash With Insufficient Computational Effort
https://github.com/Cyxow/CVE-2024-3183-POC
2. CVE-2024-33895:
Use of Hard-coded Cryptographic Key in
Ewon Cosy+ VPN Gatewayhttps://seclists.org/fulldisclosure/2024/Aug/22
❤1
#Offensive_security
Ghost in the PPL
Part 1 - BYOVDLL:
https://itm4n.github.io/ghost-in-the-ppl-part-1
Part 2 - From BYOVDLL to Arbitrary Code Execution in LSASS
https://itm4n.github.io/ghost-in-the-ppl-part-2
Ghost in the PPL
Part 1 - BYOVDLL:
https://itm4n.github.io/ghost-in-the-ppl-part-1
Part 2 - From BYOVDLL to Arbitrary Code Execution in LSASS
https://itm4n.github.io/ghost-in-the-ppl-part-2
sync+sync.pdf
1.4 MB
#Research
"Sync+Sync: A Covert Channel Built on fsync with Storage", 2024.
]-> https://github.com/toast-lab/Sync-Sync
"Sync+Sync: A Covert Channel Built on fsync with Storage", 2024.
]-> https://github.com/toast-lab/Sync-Sync
👍1
#exploit
1. CVE-2024-41660:
Vulnerability in OpenBMC
https://tetrelsec.com/posts/cve-2024-41660-slpd-lite
2. CVE-2024-43403:
Kanister Vulnerability
https://github.com/kanisterio/kanister/security/advisories/GHSA-h27c-6xm3-mcqp
1. CVE-2024-41660:
Vulnerability in OpenBMC
https://tetrelsec.com/posts/cve-2024-41660-slpd-lite
2. CVE-2024-43403:
Kanister Vulnerability
https://github.com/kanisterio/kanister/security/advisories/GHSA-h27c-6xm3-mcqp
#Offensive_security
1. InfraRed AWS Project
https://github.com/0xBienCuit/InfraRed-AWS
2. AD Attacks Automation Scripts
https://github.com/VKo9/AD-attacks-automation-scripts
1. InfraRed AWS Project
https://github.com/0xBienCuit/InfraRed-AWS
2. AD Attacks Automation Scripts
https://github.com/VKo9/AD-attacks-automation-scripts
macsec.pdf
17.7 MB
#Research
"Unveiling Mac Security:
A Comprehensive Exploration of Sandboxing and AppData TCC", 2024.
]-> https://github.com/guluisacat/MySlides/tree/main/BlackHatUSA2024_KCon2024
"Unveiling Mac Security:
A Comprehensive Exploration of Sandboxing and AppData TCC", 2024.
]-> https://github.com/guluisacat/MySlides/tree/main/BlackHatUSA2024_KCon2024
#tools
#OSINT
#WLAN_Security
iSniff GPS - Passive sniffing tool for capturing and visualising WiFi location data disclosed by iOS devices
https://github.com/hubert3/iSniff-GPS
#OSINT
#WLAN_Security
iSniff GPS - Passive sniffing tool for capturing and visualising WiFi location data disclosed by iOS devices
https://github.com/hubert3/iSniff-GPS
❤1
SEARCH ENGINES FOR PENTESTERS
01. shodan.io —> (Server , Vulnerabilities)
02. google.com —> (Dorks)
03. wigle.net —> (Wifi Networks)
04. grep.app —> (Codes Search)
05. app.binaryedge.io —> (Threat Intelligence)
06. onyphe.io —> (Server)
07. viz.greynoise.io —> (Threat Intelligence)
08. censys.io —> (Server)
09. hunter.io —> (Email Addresses)
10. fofa.info —> (Threat Intelligence)
11. zoomeye.org —> (Threat Intelligence)
12. leakix.net —> (Threat Intelligence)
13. intelx.io —> (OSINT)
14. app.netlas.io —> (Attack Surface)
15. searchcode.com —> (Code Search)
16. urlscan.io —> (Threat Intelligence)
17. publicwww.com —> (Code Search)
18. fullhunt.io —> (Attack Surface)
19. socradar.io —> (Threat
Intelligence)
20. binaryedge.io —> (Attack Surface)
21. ivre.rocks —> (Server)
22. crt.sh —> (Certificate Search)
23. vulners.com —> (Vulnerabilities)
24. pulsedive.com —> (Threat Intelligence)
01. shodan.io —> (Server , Vulnerabilities)
02. google.com —> (Dorks)
03. wigle.net —> (Wifi Networks)
04. grep.app —> (Codes Search)
05. app.binaryedge.io —> (Threat Intelligence)
06. onyphe.io —> (Server)
07. viz.greynoise.io —> (Threat Intelligence)
08. censys.io —> (Server)
09. hunter.io —> (Email Addresses)
10. fofa.info —> (Threat Intelligence)
11. zoomeye.org —> (Threat Intelligence)
12. leakix.net —> (Threat Intelligence)
13. intelx.io —> (OSINT)
14. app.netlas.io —> (Attack Surface)
15. searchcode.com —> (Code Search)
16. urlscan.io —> (Threat Intelligence)
17. publicwww.com —> (Code Search)
18. fullhunt.io —> (Attack Surface)
19. socradar.io —> (Threat
Intelligence)
20. binaryedge.io —> (Attack Surface)
21. ivre.rocks —> (Server)
22. crt.sh —> (Certificate Search)
23. vulners.com —> (Vulnerabilities)
24. pulsedive.com —> (Threat Intelligence)
❤1
APIDetector: Efficiently scan for exposed Swagger endpoints across web domains and subdomains (Supports HTTP/HTTPS, multi-threading, and flexible input/output options. Ideal for API security testing).
https://github.com/brinhosa/apidetector
https://github.com/brinhosa/apidetector
GitHub
GitHub - brinhosa/apidetector: APIDetector: Efficiently scan for exposed Swagger endpoints across web domains and subdomains. Supports…
APIDetector: Efficiently scan for exposed Swagger endpoints across web domains and subdomains. Supports HTTP/HTTPS, multi-threading, and flexible input/output options. Ideal for API security testin...
EasySpider
EasySpider is a visual tool designed for data collection, testing and web scraping, without the need to write code.
Users can easily create and complete tasks through a graphical interface by selecting elements on a web page and following prompts, without the need for coding.
The program also supports executing tasks via the command line, which makes it convenient for integration into other systems.
https://github.com/NaiboWang/EasySpider
EasySpider is a visual tool designed for data collection, testing and web scraping, without the need to write code.
Users can easily create and complete tasks through a graphical interface by selecting elements on a web page and following prompts, without the need for coding.
The program also supports executing tasks via the command line, which makes it convenient for integration into other systems.
https://github.com/NaiboWang/EasySpider
GitHub
GitHub - NaiboWang/EasySpider: A visual no-code/code-free web crawler/spider易采集:一个可视化浏览器自动化测试/数据采集/网页爬虫软件,可以无代码图形化的设计和执行爬虫任务。别…
A visual no-code/code-free web crawler/spider易采集:一个可视化浏览器自动化测试/数据采集/网页爬虫软件,可以无代码图形化的设计和执行爬虫任务。别名:ServiceWrapper面向Web应用的智能化服务封装系统。 - NaiboWang/EasySpider