
Pentest-Tools-Collection
Curated collection of offensive security tools and commands for Active Directory attacks, C2, privilege escalation, obfuscation, and web pentesting.

Curated collection of offensive security tools and commands for Active Directory attacks, C2, privilege escalation, obfuscation, and web pentesting.

Automates HTTP 403 access control bypass techniques using header manipulation, path obfuscation, and HTTP method conversion for web application…

Hooked browser communication over MQTT

Like nmap for mapping wifi networks you're not connected to, plus device tracking

Burpsuite Extension to bypass 403 restricted directory

Cross Platform Telegram based RAT that communicates via telegram to evade network restrictions

XIP generates a list of IP addresses by applying a set of transformations used to bypass security measures e.g. blacklist filtering, WAF, etc.

Tool to bypass 40X response codes.

lib/G/functions.php in Chevereto 1.0.0 through 1.1.4 Free, and through 3.13.5 Core, allows an attacker to perform bruteforce attacks without…

Tool that monitors, analyzes and limits the bandwidth of devices on the local network without administrative access

Powerview on steroids

Tool that monitors, analyzes and limits the bandwidth of devices on the local network without administrative access (for Windows only)

Stealth Windows process enumeration PoC that lists PIDs using NTFS via NtQueryInformationFile, bypassing standard monitoring APIs and enabling EDR…

Sorry, this tool WAS abandoned for a while. I got stress on this thing.

Repository for CVE-2023-4631 vulnerability.

Repository for CVE-2023-4281 vulnerability.