A collection of more than 170+ tools, scripts, cheatsheets and other loots that I've developed over years for Red Teaming/Pentesting/IT Security audits purposes. https://mgeeky.tech/
Go to file
mgeeky 097a56e99e README 2020-01-19 23:17:49 +01:00
clouds/aws Added forticlientsslvpn-expect.sh 2019-12-11 10:58:24 +01:00
file-formats First 2018-02-02 22:22:43 +01:00
linux Added domain categorization and expired searching tools to prepare-linux 2020-01-18 18:17:51 +01:00
networks Multiple enhancements to networkConfigurationCredentialsExtract.py 2020-01-16 10:31:33 +01:00
others Removed superflouous script 2019-12-11 11:43:28 +01:00
red-teaming README 2020-01-19 23:17:49 +01:00
web Webshell.jsp updated 2019-06-28 12:37:49 +02:00
windows Simple reverse-shell added. 2019-06-28 13:22:06 +02:00
.gitmodules Added malleable_redirector 2020-01-19 22:35:28 +01:00
README.md Added AWS CloudTrail disruption tool 2019-03-20 17:47:42 +01:00

README.md

Penetration Testing Tools, Scripts, CheatSheets

This is a collection of many tools, scripts, cheatsheets and other loots that I've been developing over years for penetration testing and IT Security audits purposes. Many of them actually had been used during real-world assignments, some of them are a collection gathered from various sources (waiting to be used someday).

Notice: In order to clone it properly - use --recurse-submodules option:

bash$ git clone --recurse-submodules https://github.com/mgeeky/Penetration-Testing-Tools

This repository does not contain actual exploits. These I will release under separate repository in some point in future.

Most of these files actually comes straight from my Gists - I've decided to move them into separated repository as managmenet of this number of scripts became tough nut to crack.

This repository is divided further onto following directories:

  • clouds - Cloud-Security related tools
  • file-formats - Contains various file-format related utilities, fuzzers and so on.
  • linux - Contains linux-based scripts for various purposes.
  • networks - Network devices & services Penetration Testing and auditing scripts
  • others - Others related somehow to penetration tests & Audits
  • red-teaming - Powershell, Visual Basic, js, phishings and other alike candys
  • web - Web-Application auditing, pentesting, fuzzing related.
  • windows - Windows utilities, scripts, exploits.

Of course these tools do not contain any customer/client related sensitive informations and there are no assignment-specific tools developed as PoCs.