Tagged: pentest

ForgeCert – "Golden" Certificates 0

ForgeCert – "Golden" Certificates

ForgeCert uses the BouncyCastle C# API and a stolen Certificate Authority (CA) certificate + private key to forge certificates for arbitrary users capable of authentication to Active Directory. This attack is codified as DPERSIST1...

GitOops – All Paths Lead To Clouds 0

GitOops – All Paths Lead To Clouds

GitOops is a tool to help attackers and defenders identify lateral movement and privilege escalation paths in GitHub organizations by abusing CI/CD pipelines and GitHub access controls. It works by mapping relationships between a...

AF-ShellHunter – Auto Shell Lookup 0

AF-ShellHunter – Auto Shell Lookup

AF-ShellHunter: Auto shell lookup AF-ShellHunter its a script designed to automate the search of WebShell’s in AF Team How to pip3 install -r requirements.txtpython3 shellhunter.py –help Basic Usage You can run shellhunter in two...