Aggregator
Shwmae: A Windows Hello abuse tool
Shwmae Shwmae (shuh-my) is a Windows Hello abuse tool that was released during DEF CON 32 as part of the Abusing Windows Hello Without a Severed Hand Talk. The purpose of the tool is...
The post Shwmae: A Windows Hello abuse tool appeared first on Penetration Testing Tools.
WAF Bypass Tool: open source tool to analyze the security of any WAF
WAF Bypass Tool WAF bypass Tool is an open-source tool to analyze the security of any WAF for False Positives and False Negatives using predefined and customizable payloads. Check your WAF before an attacker...
The post WAF Bypass Tool: open source tool to analyze the security of any WAF appeared first on Penetration Testing Tools.
卡巴斯基发布的 EDR 防护杀手,被勒索组织广泛使用
sshamble: A research tool for SSH implementations
sshamble SSHamble is a research tool for SSH implementations that includes: Interesting attacks against authentication Post-session authentication attacks Pre-authentication state transitions Authentication timing analysis Post-session enumeration SSHamble simulates potential attack scenarios, including unauthorized remote access...
The post sshamble: A research tool for SSH implementations appeared first on Penetration Testing Tools.
noir: attack surface detector from source code
Noir Noir is an attack surface detector from source code. Key Features Automatically identify language and framework from source code. Find API endpoints and web pages through code analysis. Load results quickly through...
The post noir: attack surface detector from source code appeared first on Penetration Testing Tools.