February 23, 2022Terra - OSINT Tool On Twitter And Instagram

  OSINT Tool On Twitter And Instagram.   Installation   Clone the github repo   $ git clone https://github.com/xadhrit/terra.git   Change Directory $ cd terra   Requirements :   For requirements run following commands:   $ python3 -m pip install -r requirements.txt   Note   For Twitter Credentials :   You need...

February 23, 2022ThreadStackSpoofer - PoC For An Advanced In-Memory Evasion Technique

      A PoC implementation for an advanced in-memory evasion technique that spoofs Thread Call Stack. This technique allows to bypass thread-based memory examination rules and better hide shellcodes while in-process memory.     Intro   This...

February 23, 2022VECTR - A Tool That Facilitates Tracking Of Your Red And Blue Team Testing Activities To Measure Detection And Prevention Capabilities Across Different Attack Scenarios

VECTR documentation can be found here: https://docs.vectr.ioVECTR Community Discord Channel: https://discord.gg/2FRd8zf728VECTR is a tool that facilitates tracking of your red and blue team testing activities to measure detection and prevention...

February 23, 2022Webdiscover - The Purpose Of This Script Is To Automate The Web Enumeration Process And Search For Exploits

The purpose of this script is to automate the web enumeration process and search for exploits and vulns.   Added Tools (dependencies are installed during script execution): seclist ffuf namelist dnsrecon subfinder whatweb gospider nuclei searchsploit go-exploitdb   It creates a directory with the...

February 23, 2022Mediator - An Extensible, End-To-End Encrypted Reverse Shell With A Novel Approach To Its Architecture

Mediator is an end-to-end encrypted reverse shell in which the operator and the shell connect to a "mediator" server that bridges the connections. This removes the...

February 23, 2022Keeweb - Free Cross-Platform Password Manager Compatible With KeePass

This webapp is a browser and desktop password manager compatible with KeePass databases. It doesn't require any server or additional resources. The app can run either in...

February 23, 2022Lorsrf - SSRF Parameter Bruteforce

  Bruteforcing on Hidden parameters to find SSRF vulnerability using GET and POST Methods     NOTE   Lorsrf has been added to scant3r with useful additions (multi http method , multi content-type (json , query...

February 23, 2022Clash - A Rule-Based Tunnel In Go

Clash A rule-based tunnel in Go.Features Local HTTP/HTTPS/SOCKS server with authentication support VMess, Shadowsocks, Trojan, Snell protocol support for remote connections...

February 23, 2022DonPAPI - Dumping DPAPI Credz Remotely

Dumping revelant information on compromised targets without AV detection  DPAPI dumping Lots of credentials are protected by DPAPI. We aim at locating those "secured" credentials,...

February 23, 2022HTTPUploadExfil - A Simple HTTP Server For Exfiltrating Files/Data During, For Example, CTFs

HTTPUploadExfil is a (very) simple HTTP server written in Go that's useful for getting files (and other information) off a machine using HTTP. While there are many use-cases,...

Archives
Categories
Tags
Bugbounty Cybersecurity Devsecops Dfir Distribution golang Information Gathering Infosec Kali Kali Linux Kerberos Linux Malware Analysis Malware Detection Microsoft mimikatz msfvenom NTLM OSINT Payload Penetration Testing Pentest Tool Pentesting Post Exploitation PowerShell Privilege Escalation Processes Python Python3 Recon Reconnaissance Red Team Red Teaming Redteam Redteam Tools Remote Research Reverse Engineering Scan Scanner Scanning Scripts Security Security Tools Shellcode SMB Spoofing SSH Static Analysis Subdomain Syscalls Testing Threat Hunting Threat Intelligence Toolkit Traffic Username vulnerabilities Vulnerability Vulnerability Scanners Vulnerable Win32 Windows Windows 10 Wireshark Wordlist XSS Yara Blueteam Subdomains Windows Defender Wrapper Redteaming Techniques