原PoC甚至符号都打错了!太不走心了!
Dépôts
Dépôts de Raikia
Test tool for CVE-2020-1472
Proof of Concept Exploit for vCenter CVE-2021-21972
A multithreaded tool designed to identify if credentials are valid, invalid, or local admin valid credentials within a network at-scale via SMB, plus now with a user hunter
DEPRECATED! LOOK AT CREDNINJA! A tool designed to identify if credentials are valid, invalid, or local admin valid credentials within a network at-scale via SMB
Egress-Assess is a tool used to test egress data detection capabilities
FiercePhish is a full-fledged phishing framework to manage all phishing engagements. It allows you to track separate phishing campaigns, schedule sending of emails, and much more.
A powershell script that prints a lot of IP and connection info to the screen
A simple script to help check if a list of IPs are within the provided network scopes
Script for Kali that adds a bunch of tools and customizes it to be much better
LyncSniper: A tool for penetration testing Skype for Business and Lync deployments
Honestly, these are just scripts for my own use and consumption. If someone wants to use them too, cool.
A collection of nmap scripts I've written
PowerSploit - A PowerShell Post-Exploitation Framework
One of the biggest annoyances of using Recon-ng is getting everything set up to use it. So here I’ll outline the different API keys it can use and where to get them yourself.
3 tools that work together to simplify reconaissance of Windows File Shares
C# utility that uses WMI to run "cmd.exe /c netstat -n", save the output to a file, then use SMB to read and delete the file remotely
SharpUp is a C# port of various PowerUp functionality.
🛫 Python script to checkin to a Southwest Flight 🛬
A script that can see if an email address is valid in Office365 (user/email enumeration). This does not perform any login attempts, is unthrottled, and is incredibly useful for social engineering assessments to find which emails exist and which don't.