#DFIR
1. DFIR PowerShell Script
https://github.com/joeavanzato/RetrievIR
2. Shellcode Delivered Through PowerShell/Python
https://isc.sans.edu/diary/Do+you+Like+Donuts+Here+is+a+Donut+Shellcode+Delivered+Through+PowerShellPython/31182
1. DFIR PowerShell Script
https://github.com/joeavanzato/RetrievIR
2. Shellcode Delivered Through PowerShell/Python
https://isc.sans.edu/diary/Do+you+Like+Donuts+Here+is+a+Donut+Shellcode+Delivered+Through+PowerShellPython/31182
#exploit
1. CVE-2024-3183:
Kerberos FreeIPA Rosting - Use of Psw Hash With Insufficient Computational Effort
https://github.com/Cyxow/CVE-2024-3183-POC
2. CVE-2024-33895:
Use of Hard-coded Cryptographic Key in
https://seclists.org/fulldisclosure/2024/Aug/22
1. CVE-2024-3183:
Kerberos FreeIPA Rosting - Use of Psw Hash With Insufficient Computational Effort
https://github.com/Cyxow/CVE-2024-3183-POC
2. CVE-2024-33895:
Use of Hard-coded Cryptographic Key in
Ewon Cosy+ VPN Gatewayhttps://seclists.org/fulldisclosure/2024/Aug/22
❤1
#Offensive_security
Ghost in the PPL
Part 1 - BYOVDLL:
https://itm4n.github.io/ghost-in-the-ppl-part-1
Part 2 - From BYOVDLL to Arbitrary Code Execution in LSASS
https://itm4n.github.io/ghost-in-the-ppl-part-2
Ghost in the PPL
Part 1 - BYOVDLL:
https://itm4n.github.io/ghost-in-the-ppl-part-1
Part 2 - From BYOVDLL to Arbitrary Code Execution in LSASS
https://itm4n.github.io/ghost-in-the-ppl-part-2
sync+sync.pdf
1.4 MB
#Research
"Sync+Sync: A Covert Channel Built on fsync with Storage", 2024.
]-> https://github.com/toast-lab/Sync-Sync
"Sync+Sync: A Covert Channel Built on fsync with Storage", 2024.
]-> https://github.com/toast-lab/Sync-Sync
👍1
#exploit
1. CVE-2024-41660:
Vulnerability in OpenBMC
https://tetrelsec.com/posts/cve-2024-41660-slpd-lite
2. CVE-2024-43403:
Kanister Vulnerability
https://github.com/kanisterio/kanister/security/advisories/GHSA-h27c-6xm3-mcqp
1. CVE-2024-41660:
Vulnerability in OpenBMC
https://tetrelsec.com/posts/cve-2024-41660-slpd-lite
2. CVE-2024-43403:
Kanister Vulnerability
https://github.com/kanisterio/kanister/security/advisories/GHSA-h27c-6xm3-mcqp
#Offensive_security
1. InfraRed AWS Project
https://github.com/0xBienCuit/InfraRed-AWS
2. AD Attacks Automation Scripts
https://github.com/VKo9/AD-attacks-automation-scripts
1. InfraRed AWS Project
https://github.com/0xBienCuit/InfraRed-AWS
2. AD Attacks Automation Scripts
https://github.com/VKo9/AD-attacks-automation-scripts
macsec.pdf
17.7 MB
#Research
"Unveiling Mac Security:
A Comprehensive Exploration of Sandboxing and AppData TCC", 2024.
]-> https://github.com/guluisacat/MySlides/tree/main/BlackHatUSA2024_KCon2024
"Unveiling Mac Security:
A Comprehensive Exploration of Sandboxing and AppData TCC", 2024.
]-> https://github.com/guluisacat/MySlides/tree/main/BlackHatUSA2024_KCon2024
#tools
#OSINT
#WLAN_Security
iSniff GPS - Passive sniffing tool for capturing and visualising WiFi location data disclosed by iOS devices
https://github.com/hubert3/iSniff-GPS
#OSINT
#WLAN_Security
iSniff GPS - Passive sniffing tool for capturing and visualising WiFi location data disclosed by iOS devices
https://github.com/hubert3/iSniff-GPS
❤1
SEARCH ENGINES FOR PENTESTERS
01. shodan.io —> (Server , Vulnerabilities)
02. google.com —> (Dorks)
03. wigle.net —> (Wifi Networks)
04. grep.app —> (Codes Search)
05. app.binaryedge.io —> (Threat Intelligence)
06. onyphe.io —> (Server)
07. viz.greynoise.io —> (Threat Intelligence)
08. censys.io —> (Server)
09. hunter.io —> (Email Addresses)
10. fofa.info —> (Threat Intelligence)
11. zoomeye.org —> (Threat Intelligence)
12. leakix.net —> (Threat Intelligence)
13. intelx.io —> (OSINT)
14. app.netlas.io —> (Attack Surface)
15. searchcode.com —> (Code Search)
16. urlscan.io —> (Threat Intelligence)
17. publicwww.com —> (Code Search)
18. fullhunt.io —> (Attack Surface)
19. socradar.io —> (Threat
Intelligence)
20. binaryedge.io —> (Attack Surface)
21. ivre.rocks —> (Server)
22. crt.sh —> (Certificate Search)
23. vulners.com —> (Vulnerabilities)
24. pulsedive.com —> (Threat Intelligence)
01. shodan.io —> (Server , Vulnerabilities)
02. google.com —> (Dorks)
03. wigle.net —> (Wifi Networks)
04. grep.app —> (Codes Search)
05. app.binaryedge.io —> (Threat Intelligence)
06. onyphe.io —> (Server)
07. viz.greynoise.io —> (Threat Intelligence)
08. censys.io —> (Server)
09. hunter.io —> (Email Addresses)
10. fofa.info —> (Threat Intelligence)
11. zoomeye.org —> (Threat Intelligence)
12. leakix.net —> (Threat Intelligence)
13. intelx.io —> (OSINT)
14. app.netlas.io —> (Attack Surface)
15. searchcode.com —> (Code Search)
16. urlscan.io —> (Threat Intelligence)
17. publicwww.com —> (Code Search)
18. fullhunt.io —> (Attack Surface)
19. socradar.io —> (Threat
Intelligence)
20. binaryedge.io —> (Attack Surface)
21. ivre.rocks —> (Server)
22. crt.sh —> (Certificate Search)
23. vulners.com —> (Vulnerabilities)
24. pulsedive.com —> (Threat Intelligence)
❤1
APIDetector: Efficiently scan for exposed Swagger endpoints across web domains and subdomains (Supports HTTP/HTTPS, multi-threading, and flexible input/output options. Ideal for API security testing).
https://github.com/brinhosa/apidetector
https://github.com/brinhosa/apidetector
GitHub
GitHub - brinhosa/apidetector: APIDetector: Efficiently scan for exposed Swagger endpoints across web domains and subdomains. Supports…
APIDetector: Efficiently scan for exposed Swagger endpoints across web domains and subdomains. Supports HTTP/HTTPS, multi-threading, and flexible input/output options. Ideal for API security testin...
EasySpider
EasySpider is a visual tool designed for data collection, testing and web scraping, without the need to write code.
Users can easily create and complete tasks through a graphical interface by selecting elements on a web page and following prompts, without the need for coding.
The program also supports executing tasks via the command line, which makes it convenient for integration into other systems.
https://github.com/NaiboWang/EasySpider
EasySpider is a visual tool designed for data collection, testing and web scraping, without the need to write code.
Users can easily create and complete tasks through a graphical interface by selecting elements on a web page and following prompts, without the need for coding.
The program also supports executing tasks via the command line, which makes it convenient for integration into other systems.
https://github.com/NaiboWang/EasySpider
GitHub
GitHub - NaiboWang/EasySpider: A visual no-code/code-free web crawler/spider易采集:一个可视化浏览器自动化测试/数据采集/网页爬虫软件,可以无代码图形化的设计和执行爬虫任务。别…
A visual no-code/code-free web crawler/spider易采集:一个可视化浏览器自动化测试/数据采集/网页爬虫软件,可以无代码图形化的设计和执行爬虫任务。别名:ServiceWrapper面向Web应用的智能化服务封装系统。 - NaiboWang/EasySpider
5GBaseChecker: a security analysis framework that helps to hunt for 5G vulnerabilities
https://github.com/SyNSec-den/5GBaseChecker
https://github.com/SyNSec-den/5GBaseChecker
GitHub
GitHub - SyNSec-den/5GBaseChecker
Contribute to SyNSec-den/5GBaseChecker development by creating an account on GitHub.
#DriverJack: Turning #NTFS and Emulated Read-only Filesystems in an Infection and Persistence Vector
Hijacking valid driver services to load arbitrary (signed) drivers abusing native symbolic links and NT paths
https://github.com/klezVirus/DriverJack
Hijacking valid driver services to load arbitrary (signed) drivers abusing native symbolic links and NT paths
https://github.com/klezVirus/DriverJack
GitHub
GitHub - klezVirus/DriverJack: Hijacking valid driver services to load arbitrary (signed) drivers abusing native symbolic links…
Hijacking valid driver services to load arbitrary (signed) drivers abusing native symbolic links and NT paths - klezVirus/DriverJack
Welcome to this new #workshop focused on the #Windows DLL Loading internals.
https://github.com/OtterHacker/Conferences/tree/main/Defcon32
https://github.com/OtterHacker/Conferences/tree/main/Defcon32
C2 Cloud - The C2 Cloud is a robust web-based C2 framework, designed to simplify the life of penetration testers. It allows easy access to compromised backdoors, just like accessing an EC2 instance in the AWS cloud. It can manage several simultaneous backdoor sessions with a user-friendly interface.
https://github.com/govindasamyarun/c2-cloud?tab=readme-ov-file#application-setup
https://github.com/govindasamyarun/c2-cloud?tab=readme-ov-file#application-setup
GitHub
GitHub - govindasamyarun/c2-cloud: The C2 Cloud is a robust web-based C2 framework, designed to simplify the life of penetration…
The C2 Cloud is a robust web-based C2 framework, designed to simplify the life of penetration testers. It allows easy access to compromised backdoors, just like accessing an EC2 instance in the AWS...
UnpromptedControl
Unprompted Control is a utility that allows you to automatically remove objects from images and repair corrupted images using deep learning and blending techniques.
The Control Net Model and Stable Diffusion Inpaint Pipeline play a key role in this process, guiding the restoration and ensuring that the results blend naturally with the surrounding image content.
However, this method has limitations, especially when processing images of people's faces and bodies, and may require masking not only the subject but also its shadows to achieve optimal results.
Despite these challenges, the repository provides a valuable tool for seamless object recovery and deletion.
https://github.com/vijishmadhavan/UnpromptedControl
Unprompted Control is a utility that allows you to automatically remove objects from images and repair corrupted images using deep learning and blending techniques.
The Control Net Model and Stable Diffusion Inpaint Pipeline play a key role in this process, guiding the restoration and ensuring that the results blend naturally with the surrounding image content.
However, this method has limitations, especially when processing images of people's faces and bodies, and may require masking not only the subject but also its shadows to achieve optimal results.
Despite these challenges, the repository provides a valuable tool for seamless object recovery and deletion.
https://github.com/vijishmadhavan/UnpromptedControl
GitHub
GitHub - vijishmadhavan/UnpromptedControl: Remove unwanted objects and restore images without prompts, powered by ControlNet.
Remove unwanted objects and restore images without prompts, powered by ControlNet. - vijishmadhavan/UnpromptedControl
❤1👍1