
Project-NTLM-Hash-Capture-and-Phishing-Email-Exploitation-for-CVE-2024-21413
The project was created to demonstrate the use of various tools for capturing NTLM hashes from users on a network and for executing phishing attacks…

The project was created to demonstrate the use of various tools for capturing NTLM hashes from users on a network and for executing phishing attacks…

Extracts browser-stored data such as refresh tokens, cookies, saved credentials, credit cards, autofill entries, browsing history, and bookmarks from…

Unauthenticated arbitrary file read in Flowise (< 2.2.4) via path traversal in getFileFromStorage (storageUtils.ts). Caused by un-sanitized file path…

Metasploitable3 is a VM that is built from the ground up with a large amount of security vulnerabilities.

An authoritative list of awesome devsecops tools with the help from community experiments and contributions.

A comprehensive, step-by-step guide to mastering cybersecurity from beginner to expert level with curated resources, tools, and career guidance

Building 70 Projects ranging from beginner to advanced so anyone can — learn from, build upon, use as a reference, or even copy directly. Gamified…

A structured course built from personal study notes of the book Linux Basics for Hackers by OccupyTheWeb.

Here you will get awesome collection of mostly all well-known and usefull cybersecurity books from beginner level to expert for all cybersecurity…

A collection of CTF write-ups, pentesting topics, guides and notes. Notes compiled from multiple sources and my own lab research. Topics also support…

DetectionLabELK is a fork from DetectionLab with ELK stack instead of Splunk.

Contains all the material from the DEF CON 31 workshop "(In)direct Syscalls: A Journey from High to Low".

This repository provides a centralized resource for operational cyber defense and offense, compiling Theory, Tools, Operating Procedures, and…

Generates pseudo-malicious files from YARA rules to trigger AV/EDR detection, enabling malware research, rule QA, and network sensor pressure testing…

Data from a BRAWL Automated Adversary Emulation Exercise

In this workshop session, we will extract firmware from an EV charger, dig into the firmware, and eventually emulate it so we can interact with the…

Binary Exploitation and Reverse-Engineering (from assembly into C)

A community‑driven cybersecurity knowledge base with 400+ notes, mind‑maps, and cheat‑sheets – built from first principles. Ideal for students, SOC…