A list of useful payloads and bypass for Web Application Security and Pentest/CTF
-
Updated
Jul 29, 2020 - Python
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
In-depth Attack Surface Mapping and Asset Discovery
A high performance offensive security tool for reconnaissance and vulnerability scanning
Monitor linux processes without root permissions
A security tool for multithreaded information gathering and service enumeration whilst building directory structures to store results, along with writing out recommendations for further testing.
Automated NoSQL database enumeration and web application exploitation tool.
The Offensive Manual Web Application Penetration Testing Framework.
Simple, extensible and powerful enumeration implementation for Laravel.
Security Tool to Look For Interesting Files in S3 Buckets
A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.
kernel privilege escalation enumeration and exploitation framework
Multi Tool Subdomain Enumeration
Sudomy is a subdomain enumeration tool to collect subdomains and analyzing domains performing automated reconnaissance (recon) for bug hunting / pentesting
Easily turn single threaded command line applications into a fast, multi-threaded application with CIDR and glob support.
This repository contains all the material from the talk "Esoteric sub-domain enumeration techniques" given at Bugcrowd LevelUp 2017 virtual conference
A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.
Notes for taking the OSCP in 2097. Read in book form on GitBook
Simple and fast implementation of enumerations with native PHP
Internal penetration testing tool for Linux that can be used to enumerate OS information, domain information, shares, directories, and users through SMB.
A Bash script that downloads and unzips scripts that will aid with privilege escalation on a Linux system.
High performance LINQ implementation with minimal heap allocations. Supports enumerables, async enumerables, arrays and Span<T>.
An asynchronous enumeration & vulnerability scanner. Run all the tools on all the hosts.
Python 3.5+ DNS asynchronous brute force utility
Enumerations for Ruby with some magic powers!
Python tool that monitors and logs user-run commands on a Linux system for either offensive or defensive purposes..
Everything needed for doing CTFs
Add a description, image, and links to the enumeration topic page so that developers can more easily learn about it.
To associate your repository with the enumeration topic, visit your repo's landing page and select "manage topics."