Skip to content
GainSec

GainSec

Where OSINT, Hacking, Penetration Testing, Privacy, Piracy, Information Security, Cyber Security and Law are a lifestyle.

  • Home
  • Projects
  • Shop
  • Resume & CV
  • Press
  • Inquiries
  • About Me
  • Archives
  • Cart
  • $0.00 0 items

Category: Penetration Testing

CLI Web Discovery Alternative to Dirb, Dirsearch, Etc

A great alternative to have for web discovery during web app pen tests or bug bounties.

gainsec Bug Bounty, Web Application Pen Testing Leave a comment March 21, 2022March 20, 2022

All in One RF/HID reader/writer smaller then the ProxMark?!

A great and useful device for any physical penetration test or hardware hacking engagement.

gainsec Hardware, Physical Penetration Test, Physical Security Leave a comment March 17, 2022March 16, 2022

An Azure AD Recon and Exploitation Framework

A toolset for performing recon and exploiting an Azure AD instance.

gainsec Azure Penetration Testing, Cloud, Cloud Penetration Testing Leave a comment March 5, 2022March 4, 2022

Holy Smokes Batman! Another big repo of Bug Bounty Reports, Cheat sheets, Checklists and more!

Another Repo of Web Application and API Bug Bounty, Penetration test and security assessment documents, reports and more!

gainsec API Penetration Testing, Web Application Pen Testing Leave a comment February 25, 2022February 20, 2022

Custom Formula CSV XLS XLSX Injection Wordlist

Created my own Formula/CSV/XLS/XLSX formula injection wordlist and added it to TreeHouse wordlists!

gainsec TreeHouse Wordlists, Web Application Pen Testing Leave a comment February 21, 2022February 19, 2022

OneListForAll added to Treehouse Wordlists!

An awesome wordlist repo added to TreeHouse Wordlists! Yay!

gainsec Web Application Pen Testing Leave a comment February 11, 2022February 5, 2022

Great example of the dangers of an Android app compiled with Debugging enabled

A concrete example of the dangers of compiling an Android application with debugging enabled.

gainsec Android, Android Hacking, Mobile Penetration Testing Leave a comment February 3, 2022February 2, 2022

Tool for performing OSINT against Firebase (Mobile Apps)

Best tool for enumeration against FireBase enivornments!

gainsec Android Hacking, Android Tips, Mobile Penetration Testing Leave a comment January 24, 2022January 23, 2022

STOP USING DEFAULT PASSWORDS

A large trove of default username and passwords for all kinds of products!

gainsec External Penetration Tests, Internal Penetration Test, Web Application Pen Testing Leave a comment January 16, 2022January 15, 2022

Interested in XXE?

XXE is an awesome web application attack vector. Here is a great recommended short course on the subject!

gainsec Beginner Tips, Web Application Pen Testing Leave a comment January 12, 2022January 11, 2022

Posts navigation

Older posts
Newer posts

Follow

  • GitHub
  • X
  • Instagram
  • Tumblr
  • Pinterest
  • LinkedIn
  • YouTube
  • LinkedIn
  • Twitch
  • Facebook
  • Etsy
 

Loading Comments...