š Hi, Iām Steve Campbell, aka @lpha3ch0.
š Iām interested in application security, pentesting, and bug bounties.
š« How to reach me:
- Email: [email protected]
- Discord: lpha3ch0
- https://www.aecyberpro.com/
- Twitter/X
Name: Steve Campbell
Type: User
Bio: Pentest consultant team lead
Twitter: lpha3ch0
Location: United States
š Hi, Iām Steve Campbell, aka @lpha3ch0.
š Iām interested in application security, pentesting, and bug bounties.
š« How to reach me:
Visual Studio 2019 project to create an installer to escalate privs when user and computer settings are "AlwaysInstallElevated".
Various Bash commands and scripts I commonly use while pentesting
Code samples for No Starch Press Black Hat Go
Black Hat Ruby book | Lab files | Buy the book https://www.amazon.com/dp/B08JHSF6GT
This Burp Suite extension allows for the automatic creation and deletion of an upstream SOCKS5 proxy on popular cloud services.
Shell script to check Cisco config files, such as those downloaded with Smart Install, for sensitive information.
An example of how to create and use CLI option parsing in C#.
CoffeeShot: Avoid Detection with Memory Injection
Crackjob is Bash shell scripts which I use to automate the process of cracking and parsing NTLM password hashes after getting Domain Admin and dumping NTDS hashes.
A repository to store my Dockerfiles
simple flask app that wraps responses in various access-control-* headers needed for cors checks
Goscan is a fast TCP scanner I created while learning Golang.
The great impacket example scripts compiled for Windows
A WiFi AP with all HTTP and HTTP traffic proxied through port 8080 for IoT assessments.
Oh-my-zsh theme for pentesters which includes the date, time, and IP address for pentest logging.
Metasploit Framework
The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application penetration testing topics.
Tool to mount all readable CIFS shares of a remote system locally to a linux system. This allows the use tools like filesystem GUIs, tree, and grep to parse and examine the remote shares as if they were locally stored.
Metasploit resource script to read a list of desired RHOST values and run the current exploit module for each.
Parses Nessus .nessus files for exploitable vulnerabilities and outputs a report file in format MM-DD-YYYY-nessus.csv
Nmapurls parses Nmap xml reports from either piped input or command line arg and outputs a list of http(s) URL's to be used in an automation pipeline.
A repository with my notable code snippets for Offensive Security's PEN-300 (OSEP) course.
Tests for LFI in PHP apps and automates the process of leveraging LFI's to recursively download source code and discover new files via includes to download additional source code files.
Pipal in python
A completely free, open source and online course about Reverse Engineering iOS Applications.
Runtime Mobile Security (RMS) š±š„ - is a powerful web interface that helps you to manipulate Android and iOS Apps at Runtime
Expands a pentest scope by taking an input list which includes IP addresses and parses DNS and TLS SAN hostnames and merges the results with the original scope list.
A declarative, efficient, and flexible JavaScript library for building user interfaces.
š Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
An Open Source Machine Learning Framework for Everyone
The Web framework for perfectionists with deadlines.
A PHP framework for web artisans
Bring data to life with SVG, Canvas and HTML. ššš
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
Some thing interesting about web. New door for the world.
A server is a program made to process requests and deliver data to clients.
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
Some thing interesting about visualization, use data art
Some thing interesting about game, make everyone happy.
We are working to build community through open source technology. NB: members must have two-factor auth.
Open source projects and samples from Microsoft.
Google ā¤ļø Open Source for everyone.
Alibaba Open Source for everyone
Data-Driven Documents codes.
China tencent open source team.