OffensiveSecurity
This repo has a collection of scripts and exploits for OSCP-style labs. It covers enumeration, exploitation, web testing, and reverse shells.
Install / Use
/learn @strikoder/OffensiveSecurityREADME
OffensiveSecurity Toolkit
A curated collection of offensive security tools, exploits, and scripts for penetration testing and security research.
Repository Structure
Bug Bounty
Tools for web application security testing and bug hunting:
webEnum.sh- Web enumeration automation scriptxssAI.sh- AI-assisted XSS detection and exploitation
CVEs & Exploits
Proof-of-concept exploits for known vulnerabilities (check readme in the folder).
Web & Reverse Shells
Various reverse shell implementations:
- ASP/ASPX -
asp_rev_shell.aspx,cmd-asp-5.1.asp,cmdasp.asp,cmdasp.aspx - PowerShell -
Invoke-ConPtyShell.ps1,Invoke-PowerShellTcp.ps1,powercat.ps1 - PHP -
php-reverse-shell.php,simple-backdoor.PHP - WordPress -
rev-shell-wp-plugin.zip
Scripts & Utilities
commands- Useful command referencesenum- Enumeration scripts and toolsturbo_intruder.py- High-speed HTTP request fuzzercheck_disabled_functions.php- PHP function restrictions checkerdotfiles.sh- Environment setup script
Remember: With great power comes great responsibility. Hack ethically. 🛡️
Related Skills
node-connect
349.2kDiagnose OpenClaw node connection and pairing failures for Android, iOS, and macOS companion apps
frontend-design
109.5kCreate distinctive, production-grade frontend interfaces with high design quality. Use this skill when the user asks to build web components, pages, or applications. Generates creative, polished code that avoids generic AI aesthetics.
openai-whisper-api
349.2kTranscribe audio via OpenAI Audio Transcriptions API (Whisper).
qqbot-media
349.2kQQBot 富媒体收发能力。使用 <qqmedia> 标签,系统根据文件扩展名自动识别类型(图片/语音/视频/文件)。
