Tools¶
Targeted Tools¶
- https://github.com/rejoinder/oscp-enumeration-script/blob/master/scan.sh
- https://github.com/Tib3rius/AutoRecon
- https://github.com/codingo/Reconnoitre
- https://github.com/RoliSoft/ReconScan
- https://github.com/jbarcia/TrustedSec/tree/master/recon_scan
- https://github.com/sleventyeleven/linuxprivchecker/blob/master/linuxprivchecker.py
- https://github.com/codingo/OSCP-2/blob/master/BASH/LinuxPrivCheck.sh
- https://github.com/welchbj/bscan
- https://github.com/xapax/oscp
- https://github.com/gajos112/OSCP-2
- https://github.com/noraj/OSCP-Exam-Report-Template-Markdown
- https://github.com/OlivierLaflamme/Cheatsheet-God
- https://github.com/rewardone/OSCPRepo
- https://github.com/0x4D31/awesome-oscp
- https://github.com/rebootuser/LinEnum
- https://github.com/M4ximuss/Powerless
- https://github.com/PowerShellMafia/PowerSploit/blob/master/Privesc/PowerUp.ps1
- nmap, ncat, tmux, SSH, sparta, gobuster, burp suite, nikto, hydra, enum4linux, rpcclient, snmpwalk, icacls, dotdotpwn, searchsploit, ftp (in general, smtp (in general), linenum.sh, linux exploit suggester, msfvenom, wireshark, and sherlock.ps1.
OSCP Collections¶
Linux¶
- Explainshell - http://www.explainshell.com/
- Script - Store shell history as a script - https://manpages.debian.org/testing/bsdutils/script.1.en.html
- Immunity Debugger and Mona. Mona part found at https://github.com/corelan/mona
Networking¶
Netcat - Ncat - Wireshark - TCPdump -
Enumeration¶
http://0daysecurity.com/penetration-testing/enumeration.html Google dorks Whois Netcraft Recon-ng
Password Attacks¶
Hydra - http://sectools.org/tool/hydra/ JTR - https://github.com/magnumripper/JohnTheRipper Medusa - https://en.kali.tools/?p=200 https://crackstation.net/ https://hashkiller.co.uk/ http://md5decrypt.net/en/Ntlm/