P.F.K 0Day @pfk_0day Channel on Telegram

P.F.K 0Day

@pfk_0day


Learn Cyber Security

P.F.K 0Day (English)

Welcome to P.F.K 0Day - the ultimate destination for learning Cyber Security! If you're passionate about protecting digital systems from cyber threats or aspire to become an expert in this field, then this Telegram channel is perfect for you. "P.F.K 0Day" provides valuable resources, tips, and tutorials on various aspects of Cyber Security, including ethical hacking, penetration testing, network security, cryptography, and much more. Whether you are a beginner looking to build a strong foundation or an experienced professional seeking to expand your knowledge, this channel has something for everyone. Stay updated with the latest trends, tools, and techniques in the world of Cyber Security by joining our community of like-minded individuals. Don't miss out on this opportunity to enhance your skills and contribute to a safer digital environment. Join "P.F.K 0Day" today and embark on an exciting journey towards becoming a Cyber Security expert!

P.F.K 0Day

26 Aug, 12:04


@RedTeamVillageRTV

P.F.K 0Day

19 Apr, 19:55


https://github.com/oldboy21/CGPL

P.F.K 0Day

17 Apr, 08:35


​​pdtm

ProjectDiscovery's Open Source Tool Manager

A simple and easy-to-use golang based tool for managing open source projects from ProjectDiscovery.

https://github.com/projectdiscovery/pdtm

P.F.K 0Day

17 Apr, 08:34


​​CreateRemoteThreadPlus

CreateRemoteThread: how to pass multiple parameters to the remote thread function without shellcode.

https://github.com/lem0nSec/CreateRemoteThreadPlus

P.F.K 0Day

17 Apr, 08:24


​​Gold Digger

Gold Digger is a simple tool used to help quickly discover sensitive information in files recursively. Originally written to assist in rapidly searching files obtained during a penetration test.

https://github.com/ustayready/golddigger

P.F.K 0Day

17 Apr, 08:19


​​Hunting-Queries-Detection-Rules

Defender For Endpoint and Azure Sentinel Hunting and Detection Queries in KQL. Out of the box KQL queries for: Advanced Hunting, Custom Detection, Analytics Rules & Hunting Rules.

https://github.com/Bert-JanP/Hunting-Queries-Detection-Rules

P.F.K 0Day

17 Apr, 08:11


​​Conjur

CyberArk Conjur automatically secures secrets used by privileged users and machine identities

https://github.com/cyberark/conjur

P.F.K 0Day

11 Apr, 07:33


​​Fuzztruction

Prototype of a fuzzer that does not directly mutate inputs but instead uses a so-called generator application to produce an input for our fuzzing target

https://github.com/fuzztruction/fuzztruction

P.F.K 0Day

09 Apr, 07:36


​​REST-Attacker

Automated penetration testing framework for APIs following the REST architecture style. The tool's focus is on streamlining the analysis of generic REST API implementations by completely automating the testing process - including test generation, access control handling, and report generation - with minimal configuration effort. Additionally, REST-Attacker is designed to be flexible and extensible with support for both large-scale testing and fine-grained analysis.

https://github.com/RUB-NDS/REST-Attacker

P.F.K 0Day

09 Apr, 07:26


​​CVE-2022-39073

Proof of concept for the command injection vulnerability affecting the ZTE MF286R router, including an RCE exploit.

https://github.com/v0lp3/CVE-2022-39073

#cve #exploit
@Pfk_0Day

P.F.K 0Day

08 Apr, 13:30


https://github.com/Phypeng/StupidData

P.F.K 0Day

08 Apr, 09:41


https://github.com/Liuergouzi/kefu

#sqlinjection
@pfk_0day

P.F.K 0Day

08 Apr, 09:39


sql injection
An online customer service system based on vue+node+socket+vant+mysql, front and back ends are separated, browser fingerprint is used as the unique id of visitors, built-in chatGPT intelligent reply, uses RSA to encrypt and decrypt data, prevents sql injection, xss, and can send pictures Emoticons, query history messages, leave messages, kick people, etc., more functions are waiting for subsequent updates. Simple and fast deployment, basically I have written notes every few lines, strong readability, currently there are not many functions, welcome for secondary development
https://github.com/Liuergouzi/-
#sqlinjection
@Pfk_0day

P.F.K 0Day

23 Mar, 05:23


https://github.com/edoardottt/awesome-hacker-search-engines

P.F.K 0Day

23 Mar, 05:13


CVE-2022-34718:
IPv6 RCE exploit sample

https://github.com/SecLabResearchBV/CVE-2022-34718-PoC
@Pfk_0day

P.F.K 0Day

14 Feb, 05:56


TcpDump Cheat Sheet
#Tcpdump #CheatSheet
@pfk_0day

P.F.K 0Day

06 Feb, 09:46


​​BYOB

BYOB is an open-source post-exploitation framework for students, researchers and developers. It includes features such as:

▫️ Command & control server with intuitive user-interface
▫️ Custom payload generator for multiple platforms
▫️ 12 post-exploitation modules

https://github.com/malwaredllc/byob
@pfk_0day

P.F.K 0Day

20 Jan, 21:44


Network Attacks
#infographic #infosec #tip
@Pfk_0Day

P.F.K 0Day

13 Jan, 17:42


​​lazyParam

A simple automation tool with the implementation of multi-threading to check for hidden parameters. This tool is still in testing phase and more implementations are soon to be made. note: Works with python3

Features:
▫️ Fuzz parameters for both GET and POST method
▫️ Multi-threaded (Default: 4)
▫️ Use intensive mode with characters bypassing techniques (beta)
▫️ Check for LFI, RCE and SSTI

https://github.com/aniqfakhrul/lazyParam

@pfk_0day

P.F.K 0Day

13 Jan, 17:39


​​ExportDumper

A small tool I made to dump the export table of PE files. The primary use case was intended for use within DLL proxying.

https://github.com/iilegacyyii/ExportDumper

@Pfk_0day