• Stars
    star
    33
  • Rank 783,877 (Top 16 %)
  • Language
    Go
  • License
    The Unlicense
  • Created almost 3 years ago
  • Updated about 2 years ago

Reviews

There are no reviews yet. Be the first to send feedback to the community and the maintainers!

Repository Details

HTTP request smuggling attack helper/CLI tools to manipulate HTTP packets

More Repositories

1

fileless-xec

Stealth dropper executing remote binaries without dropping them on disk .(HTTP3 support, ICMP support, invisible tracks, cross-platform,...)
Go
184
star
2

QueenSono

Golang binary for data exfiltration with ICMP protocol (+ ICMP bindshell, http over ICMP tunneling, ...)
Go
143
star
3

notionterm

๐Ÿ–ฅ๏ธ๐Ÿ“– Embed reverse shell in Notion pages
Go
122
star
4

volana

๐ŸŒ’ Shell command obfuscation to avoid detection systems
Go
120
star
5

cfuzz

Command line fuzzer and bruteforcer ๐ŸŒช wfuzz for command
Go
85
star
6

TrojanSourceFinder

๐Ÿ”Ž Help find Trojan Source vulnerability in code ๐Ÿ‘€ . Useful for code review in project with multiple collaborators (CI/CD)
Go
45
star
7

tacos

๐ŸŒฎ INTERACTIVE reverse shell everywhere! (Particularly digestible with socat multi-handler listener)
Shell
29
star
8

Notionion

Notion as an HTTP proxy
Go
27
star
9

DomXssFinder

Find sources and sinks in js code that could lead to DOM XSS ๐Ÿ”Ž๐Ÿ’ง๐Ÿšฐ
Shell
21
star
10

gitar

๐Ÿ“ก Ease file sharing during pentest/CTF ๐ŸŽธ
Go
12
star
11

Readme-Like-Button

Style your README with a "like button" ๐Ÿ‘
10
star
12

SMTrackerP

๐ŸŽฃ Simple Mail Tracker Protocol ๐Ÿ“ฌ bring back into fashion the acknowledgement of receipt
Go
8
star
13

JSextractor

Fastly gather all JavaScript from url (CLi+TUI)
Go
8
star
14

Hack-weak-strcmp-code

A description of a basic hack over a C files using strcmp function
C
7
star
15

sexonthebash

Unprivileged and stealth shell input and output listeners. Differerent approach for keylogging with Shell/bash.
Go
6
star
16

bang

My pentest machine environment set up, tools, aliases and shortcuts
Shell
5
star
17

cssrf

Ease CSS exfiltration
Go
5
star
18

httpecho

Golang HTTP echo server (real raw request echoed)
Go
4
star
19

magnet

๐Ÿงฒ Hide data exfiltration in harmless looking executable
Go
4
star
20

wslight

Unix command translator on Windows cmd
Go
4
star
21

console.sh

Share terminal in your browser console
JavaScript
4
star
22

AravisFS

Encrypted filesystem ๐Ÿ” And a CLI to remotely and securely interact with (if you want to store encrypted private data on โ˜๏ธ)
Go
3
star
23

.pwnvscode

Obtain RCE by poisoning .vscode folder
Shell
3
star
24

shuid

Nim project for Persistence & Privesc using S(hadow)UIDs files ๐Ÿ‘ค
Nim
3
star
25

PoC-Website-Masquerading

PoC on how to impersonnate/masquerade a website locally ๐ŸŽญ
Shell
3
star
26

friendly-windows-malware

๐Ÿ’ป๐ŸŽจ Simple executables to prove remote code execution in a nice and harmless way in your demos
Go
2
star
27

sheesh

A ยซย better than an aliasย ยป generator (flag & completion) ๐Ÿช‚
Go
2
star
28

kube-podpreemption-DoS

๐ŸŒช๏ธ Evict pods and block pod deployment (DoS) on kubernetes
Python
2
star
29

quicli

๐Ÿช† Go library to quickly build CLI using a simple one-liner
Go
2
star
30

kraken_capital_gain

Get the capital gain of yourtrade history considering different parameter (timeframe, currency, etc)
Python
1
star
31

TheWordIsYours

Malicious Macro for the dummies ๐ŸŒ Choose a payload, inject it, sprinkle with stealthiness, wait with a cup of tea ๐Ÿซ–
VBA
1
star