
MobileApp-Pentest-Cheatsheet
The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application penetration…

The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application penetration…

A curated list of public TEE resources for learning how to reverse-engineer and achieve trusted code execution on ARM devices

Ressources and papers related to my conferences and work on (un)RASPs. These work is in progress, please be patient :) Don't hesitate to contribute /…

The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

Curated directory of static analysis (SAST) tools and linters for programming languages, configs, build tools, and CI, focused on improving code…

Curated archive of public proof-of-concept exploits and vulnerability research writeups covering web, binary, and network security, with a focus on…

Complete Practical Study Plan to become a successful cybersecurity engineer based on roles like Pentest, AppSec, Cloud Security, DevSecOps and so…

A curated list of fuzzing resources ( Books, courses - free and paid, videos, tools, tutorials and vulnerable applications to practice on ) for…

This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and how they can…

The community's most comprehensive, continuously-updated index of research on Large Language Models for software vulnerability detection — papers…

Curated systematic literature review of 756+ papers on LLM applications in cybersecurity, covering threat intelligence, vulnerability detection,…

Homemade Pwnbox :rocket: / Rogue AP :satellite: based on Raspberry Pi — WiFi Hacking Cheatsheets + MindMap :bulb:

RedTeam/Pentest notes and experiments tested on several infrastructures related to professional engagements.

Browser extension that automatically fills out cookie popups based on your preferences

Awesome list of step by step techniques to achieve Remote Code Execution on various apps!

An open library of adversary emulation plans designed to empower organizations to test their defenses based on real-world TTPs.

List of tools & datasets for anomaly detection on time-series data.

The AI Security Verification Standard (AISVS) focuses on providing developers, architects, and security professionals with a structured checklist to…