Gray Hat™
Open in Telegram
🚩 Channel was restricted by Telegram
Show moreNo data
Subscribers
-824 hours
-367 days
-2630 days
Posts Archive
Repost from InfoSec Insider
BluetoothAssistant is an Android application that bridges command line commands from Linux/Windows/Mac Operating Systems to Android devices over adb.
https://github.com/sgxgsx/BluetoothAssistant
#InfoSecInsider
Repost from InfoSec Insider
This tool is a Proof of Concept and is for Educational Purposes Only, Seeker shows what data a malicious website can gather about you and your devices and why you should not click on random links and allow critical permissions such as Location etc.
Kali Linux / Arch Linux / Ubuntu / Parrot OS / Termux
https://github.com/thewhiteh4t/seeker.git
#InfoSecInsider
Repost from InfoSec Insider
Devil-X | Get Your Termux Ready for Android Hacking - The Ultimate All-in-One Tool. Plus, Troubleshoot Common Termux Errors.
This tool offers a variety of functions that allow you to perform different activities related to gathering information about a target. For example, you can use it to collect details such as the target's email address, phone number, and IP location. By utilizing this tool, you can explore various capabilities and possibilities it offers. Furthermore, it enables you to install and use 110 hacking tools within the Termux environment, providing even more opportunities for exploring and utilizing different hacking techniques.
https://github.com/MrHacker-X/DevilX.git
#Termux@InfoSecInsider
Repost from InfoSec Insider
The Virus-Builder tool is a sophisticated program designed to create destructive malware specifically targeting Windows operating systems. This tool allows users to customize and configure the virus to automatically execute when inserted into a USB drive, increasing the potential for spreading the malware to other systems.
https://github.com/Cyber-Dioxide/Virus-Builder/
#Termux
Repost from InfoSec Insider
Bypass Cloudflare's /h/b/jsd challenge using 100% python.
https://github.com/xkiian/cloudflare-jsd
Malware Bible is now opensource: by The Perkins Cybersecurity Educational Fund and Malcore..
https://github.com/Perkins-Fund/Malcore-Free-Courses
Repost from InfoSec Insider
Methods to access free internet
https://github.com/majidrezarahnavard/way_of_freedom
Repost from InfoSec Insider
Red teaming tool to dump LSASS memory, bypassing basic countermeasures.
https://github.com/0xdea/blindsight
Repost from InfoSec Insider
Online resources related to Detection Engineering. Detection rules, event log references, attack samples and others.
https://github.com/st0pp3r/Awesome-Detection-Engineer
#Tools@InfoSecInsider
Repost from 𝗛𝗮𝗰𝗸𝗲𝗿𝘀 𝗙𝗮𝗰𝘁𝗼𝗿𝘆
#GitHub #Tools
Invoke-ArgFuscator is an open-source, cross-platform PowerShell module that helps generate obfuscated command-lines for common system-native executables.
https://github.com/wietze/Invoke-ArgFuscator
Python script to enumerate users, groups and computers from a Windows domain through LDAP queries.
https://github.com/ropnop/windapsearch
The repository of popular C2 (sources).
https://github.com/APTIRAN/C2
DECeption with Evaluative Integrated Validation Engine (DECEIVE): Let an LLM do all the hard honeypot work!
https://github.com/splunk/DECEIVE
A powerful tool for automated LLM fuzzing. It is designed to help developers and security researchers identify and mitigate potential jailbreaks in their LLM APIs.
https://github.com/cyberark/FuzzyAI?tab=readme-ov-file
BOF that finds all the Nt* system call stubs within NTDLL and overwrites with clean syscall stubs (user land hook evasion)
https://github.com/boku7/patchwerk
#Tools@dilagrafie
Repost from 𝗛𝗮𝗰𝗸𝗲𝗿𝘀 𝗙𝗮𝗰𝘁𝗼𝗿𝘆
#GitHub #Tools
#cli #rust search tool that allows to look for a keyword/regex in a dozens file types: PDF, ZIP, TAR, DOCX, EPUB, SQLITE and more.
https://github.com/phiresky/ripgrep-all
Github repo with collection of yaml files with basic info (main page link, url search link etc) about different web archives:
- UK British Library Web Archive'
- Estonian Web Archive
and dozens more.
https://github.com/webrecorder/public-web-archives
SSL-bypass : Root Detection & SSL Bypass Script - It utilizes Frida's powerful JavaScript injection capabilities to bypass both root detection and SSL certificate pinning in Android applications.
https://github.com/0xCD4/SSL-bypass
EarlyCascade: A PoC for Early Cascade process injection technique.
https://github.com/0xNinjaCyclone/EarlyCascade
A Fortinet FortiOS Authentication Bypass PoC.
https://github.com/watchtowrlabs/fortios-auth-bypass-poc-CVE-2024-55591
#Tools@dilagrafie
Repost from CyberDilara
WAF bypass payload and detailed explanation
<sVg/onfake="x=y"oNload=;1^(co\u006efirm)``^1//
#bugbountytips #cybersecurity #infosec
Repost from CyberDilara
This tool downloads each page from the Wayback Machine for a specific domain and enables further keyword search on each saved page.
https://github.com/lorenzoromani1983/wayback-keyword-search
Repost from InfoSec Insider
Bypass Cloudflare's /h/b/jsd challenge using 100% python.
https://github.com/xkiian/cloudflare-jsd
Repost from CyberDilara
Simple Python tool to check if there is an Office 365 instance linked to a domain.
https://github.com/nixintel/o365chk
Repost from CyberDilara
RealmOsintEx
#Elixirlang library that check the existence of a Microsoft365 tenant for target domain and give back all the information from API
"UserState"
"Login"
"AuthURL"
"FederationBrandName"
"CloudInstanceName"
and more
https://github.com/nix2intel/realm_osint_ex
Repost from CyberDilara
If you want to search for a person in the http://pipl.com database (25 billion+ records) but you don't have a subscription to it, you can do through this http://usersearch.ai (get free 1mo access to basic service + a little separate fee for each query to Pipl)
#Tools@CyberDilara
Repost from InfoSec Insider
DarkCool All Tools For Hacking Activity! List:~ Exploiter, Checker, Webshell Finder, Grabber, Searching, Bruteforce, Random, And Others Tools.
https://github.com/DarkSkull777/DarkCool
Repost from 𝗛𝗮𝗰𝗸𝗲𝗿𝘀 𝗙𝗮𝗰𝘁𝗼𝗿𝘆
#GitHub #Tools
POC of GITHUB simple C2 in rust
https://github.com/offalltn/gitC2
BlitzSSH is a multi-threaded SSH brute-force tool with Telegram integration for real-time notifications.
https://github.com/HackfutSec/BlitzSSH
A comprehensive Python-based security tool for file scanning, malware detection, and analysis in an ever-evolving cyber landscape.
https://github.com/samhaxr/VTScanner
This tool downloads each page from the Wayback Machine for a specific domain and enables further keyword search on each saved page.
https://github.com/lorenzoromani1983/wayback-keyword-search
#Tools@dilagrafie
