Singapore22 followers43 repositories
Repositories
This repository contains various XXE labs set up for different languages and their different parsers. This may alternatively serve as a playground to teach or test with Vulnerability scanners / WAF rules / Secure Configuration settings.
★ 116PHPForks 34
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
★ 0PythonForks 0
🚨 rdesktop is in need of a new maintainter. Please see the home page for more details. 🚨
★ 0Forks 0
★ 0TypeScriptForks 0
A repository to study attack surface of VueJS. Many articles online talked about VueJS vulnerabilities in lengthy and wordly sentences with little example codes. Here, I aim to provide short and simple PoC codes for educational purpose.
★ 3HTMLForks 0
★ 1JavaForks 0
Logs is a Burp Suite extension to work with log files.
★ 2JavaForks 0
I keep notes on how port tunneling works, explain the different techniques and specify which scenario to deploy which techniques.
★ 0Forks 0
Testing out blogging on Github
★ 0PythonForks 0
Journey to learning frida android.
★ 11JavaScriptForks 3
Detect WFP filters blocking EDR communications
★ 0Forks 0
level 1 to 5
★ 5CForks 2
Remote Desktop Protocol .NET Console Application for Authenticated Command Execution
★ 0C#Forks 0
Attempts to map various CMD enumerations to powershell version without creating executable process.
★ 0PowerShellForks 0
Open-Source Phishing Toolkit
★ 1Forks 1
Some of the write ups from playing IceCTF that ended on 26 August 2016
★ 0Forks 0
★ 0CForks 0
After attending an informative session of CTF101 conducted by the NUSGreyhats, these write ups were written during the workshop. Although the solutions were already covered in the workshop, it would good to keep a reference and keep track of what techniques we have learnt today.
★ 0PythonForks 0
learn how to set up SOAP in various language.
★ 0JavaForks 0
Mock ec2 instance metadata service that can run on a developer machine
★ 0Forks 0
AWS Cloud Pentest Utility - Helper scripts for a quicker Cloud PT on AWS environments
★ 0Forks 0
Targeted vulnerability scanning for burp suite.
★ 0Forks 0
CloudGoat is Rhino Security Labs' "Vulnerable by Design" AWS deployment tool
★ 0Forks 0
Burp extension to help developers replicate findings from pen tests
★ 0Forks 0
★ 0Forks 0
"Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.
★ 0Forks 0
TP_Link Atheros USB Dongle
★ 1ShellForks 0
A small set of dumb tools for a guy who is learning basics of finance.
★ 0PythonForks 0
A place to dockerize GUI tools
★ 0ShellForks 0
A demo of overriding what's in a person's clipboard
★ 0Forks 0