#夺旗赛 (CTF) 和网络安全资源#A collection of hacking / penetration testing resources to make you better!
翻译 - 一系列骇客/渗透测试资源,可助您一臂之力!
一个自动化Linux root提权工具
A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.
翻译 - 备忘单,其中包含Windows Active Directory的常见枚举和攻击方法。
K8工具合集(内网渗透/提权工具/远程溢出/漏洞利用/扫描工具/密码破解/免杀工具/Exploit/APT/0day/Shellcode/Payload/priviledge/BypassUAC/OverFlow/WebShell/PenTest) Web GetShell Exploit(Struts2/Zimbra/Weblogic/Tomcat/Apache/Jboss/DotNetNuke...
A collection of links related to Linux kernel security and exploitation
翻译 - 一堆与Linux内核开发有关的链接
An Information Security Reference That Doesn't Suck; https://rmusser.net/git/admin-2/Infosec_Reference for non-MS Git hosted version.
翻译 - 不会吸的信息安全参考
📦 Make security testing of K8s, Docker, and Containerd easier.
翻译 - CDK是一个开放源代码的容器渗透工具包,可在不依赖任何操作系统的情况下,在不同的瘦容器中进行稳定利用。它带有有用的网络工具,许多强大的PoC / EXP可帮助您轻松逃脱容器并接管K8s集群。
一个攻防知识仓库 Red Teaming and Offensive Security
Linux enumeration tool for pentesting and CTFs with verbosity levels
#夺旗赛 (CTF) 和网络安全资源#Automation for internal Windows Penetrationtest / AD-Security
#夺旗赛 (CTF) 和网络安全资源#This cheasheet is aimed at the CTF Players and Beginners to help them understand the fundamentals of Privilege Escalation with examples.
翻译 - 此备忘单旨在面向CTF玩家和初学者,以帮助他们通过示例了解权限提升的基础。
Privilege Escalation Enumeration Script for Windows
翻译 - Windows的特权升级枚举脚本
Fancy reverse and bind shell handler
翻译 - 花式反向绑定外壳处理程序
A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.
翻译 - 备忘单,其中包含Windows Active Directory的常见枚举和攻击方法。
A sugared version of RottenPotatoNG, with a bit of juice, i.e. another Local Privilege Escalation tool, from a Windows Service Accounts to NT AUTHORITY\SYSTEM.
翻译 - 从Windows服务帐户到NT AUTHORITY \ SYSTEM的糖化版本的RottenPotatoNG,带有一点汁液,即另一个本地特权升级工具。
Full-featured C2 framework which silently persists on webserver with a single-line PHP backdoor
#夺旗赛 (CTF) 和网络安全资源#A tool designed to exploit a privilege escalation vulnerability in the sudo program on Unix-like systems. It takes advantage of a specific misconfiguration or flaw in sudo to gain elevated privileges ...
A python script to automatically coerce a Windows server to authenticate on an arbitrary machine through 12 methods.
RedTeam/Pentest notes and experiments tested on several infrastructures related to professional engagements.
翻译 - RedTeam/Pentest notes and experiments tested on several infrastructures related to professional engagements.