resource: penetration-testing
422 resources, primary matches first, then adoption-weighted; health v2 shown.
| Resource | Health v2 | Stars | Maturity |
|---|---|---|---|
| R3dy/capsulecorp-pentest A Vagrant and Ansible managed virtual network of five VirtualBox VMs: an Xubuntu attacker machine with common pentest tools and four Window… | 32 | 1006 | maintenance |
| sagishahar-zz/lpeworkshop A free workshop covering local privilege escalation attack vectors on Windows and Linux, including slides, lab VMs, exercise walkthroughs, … | 32 | 1001 | maintenance |
| Micropoor/Micro8 Micro8 is a free, open-source GitBook series of penetration testing lessons written by a veteran Chinese security practitioner, covering co… | 32 | 18056 | abandoned |
| sundowndev/hacker-roadmap A curated roadmap and collection of hacking tools, resources, and references for learning ethical hacking and penetration testing. It organ… | 10 | 15567 | abandoned |
| yeyintminthuhtut/Awesome-Red-Teaming A curated awesome-list of red teaming resources organized by MITRE ATT&CK tactics such as initial access, persistence, privilege escalation… | 32 | 8071 | abandoned |
| coreb1t/awesome-pentest-cheat-sheets A curated awesome-list collection of cheat sheets useful for penetration testing, covering discovery, enumeration, exploitation, and genera… | 10 | 4364 | abandoned |
| x0rz/EQGRP A browsable, decrypted dump of the ShadowBrokers' eqgrp-auction-file.tar.xz archive containing alleged NSA Equation Group hacking tools, ex… | 32 | 4202 | abandoned |
| x0rz/EQGRP_Lost_in_Translation A mirror of the decrypted Shadow Brokers leak containing Equation Group (NSA) Windows exploits, implants, payloads, banking attack operatio… | 32 | 1999 | abandoned |
| abatchy17/WindowsExploits A collection of mostly precompiled Windows exploits, largely forked from another privilege-escalation repository. It is no longer being upd… | 32 | 1934 | abandoned |
| SpecterOps/at-ps SpecterOps' free 'Adversary Tactics: PowerShell' course material covering offensive and defensive PowerShell tradecraft. It is no longer ma… | 32 | 1609 | abandoned |
| Vancir/365-days-get-xuanwulab-job A 365-day self-study roadmap and daily notes repository created by a security researcher aiming to land a job at Tencent Xuanwu Lab. It cov… | 10 | 1439 | abandoned |
| MorteNoir1/virtualbox_e1000_0day A public proof-of-concept exploit for a guest-to-host escape vulnerability (0day) in VirtualBox's E1000 (Intel PRO/1000 MT) network device … | 32 | 1426 | abandoned |
| lucyoa/kernel-exploits A curated collection of Linux kernel privilege escalation exploits written in C, organized by exploit name with lists of vulnerable kernel … | 32 | 1208 | abandoned |
| vysecurity/RedTips A curated collection of red team tips originally posted by @vysecurity on Twitter, covering offensive security techniques like lateral move… | 10 | 1119 | abandoned |
| Xyntax/1000php A curated dataset of 1000 PHP code audit vulnerability cases extracted from publicly disclosed WooYun (乌云) vulnerabilities prior to July 20… | 32 | 1106 | abandoned |
| RhinoSecurityLabs/Security-Research A collection of security exploits and research code written by the Rhino Security Labs team. The repository is deprecated and no longer mai… | 32 | 1101 | abandoned |
| zhengmin1989/iOS_ICE_AND_FIRE A Chinese-language article series ('iOS Ice and Fire Song') covering iOS security research, from userland sandbox escapes to kernel exploit… | 32 | 1082 | abandoned |
| lirantal/awesome-nodejs-security A curated awesome-list of Node.js security resources, including tools for framework hardening, static and dynamic analysis, vulnerability a… | 76 | 3027 | active |
| cipher387/Dorks-collections-list A curated awesome-list of GitHub repositories and articles collecting search engine dorks (Google, Shodan, Censys, GitHub, DuckDuckGo, and … | 39 | 2732 | active |
| Jieyab89/OSINT-Cheat-sheet A curated cheat sheet repository listing OSINT (open-source intelligence) tools, datasets, wikis, articles, and tutorials for reconnaissanc… | 77 | 2182 | active |
| jiep/offensive-ai-compilation A curated list of resources covering Offensive AI, including adversarial machine learning attacks (extraction, inversion, poisoning, evasio… | 74 | 1418 | active |
| danielmiessler/RobotsDisallowed A curated dataset of robots.txt disallowed directories harvested from the top 100K websites (Alexa/Majestic), useful for content discovery … | 32 | 1490 | maintenance |
← prev page 5 / 5