Giter VIP home page Giter VIP logo

Hi, I'm straysheep-dev. šŸ‘‹

āš”ļø I'm here learning security from an offensive perspective and documenting things in a useful way as I go.

šŸ›”ļø I also focus on building defensive (or "visibility") tools, and configuration templates learned from applying offensive techniques to systems.

Certifications

Static Badge Static Badge Static Badge Static Badge Static Badge Static Badge

Connect

Static Badge straysheep-dev
Static Badge straysheep-dev
Static Badge straysheep_dev
Static Badge straysheepdev
Static Badge straysheep.dev

Projects

ā¬‡ļø Core projects. āž”ļø My guides and utilities. āž”ļø My blog illustrating various topics.

Utilities and configuration files accompanied by guides, focusing on security. These include web browsers, GPG, SSH, DNS, VPN's, shell profiles, hypervisors, tools to parse and summarize system processes, network activity, auditd logs, strings in project files (based on bstrings) and more.

PowerShell modules and scripts used to configure windows or automate tasks. Plus an extensive walkthrough of Windows specific items such as Hyper-V usage, Windows Sandbox, WSL + USB, logging & monitoring, and more.

A collection of ansible roles, with guidance on writing, debugging, and linting ansible code. This includes secrets management, testing plays, and more. The roles are meant to be mixed and used however needed, and offer conditional options for deployment. The main playbook.yml file is commented to help you get started.

How vagrant works, and everything needed to get started using it with security in mind. Includes a sample Vagrantfile for Kali on Hyper-V and VirtualBox showing what provider settings you may want to use. Quirks of Hyper-V and how to resolve them are covered. Lastly, resources to be aware of for building a home lab are linked.

Ready to use terraform templates, and an easy to follow guide to go from installing, to deploying resources. Also includes guidance on fixing partial deployments, secrets management, and how to generate an ansible inventory from your deployed resources.

Webhook based alerting (Slack, Discord...) for events, account access, honey files, etc. It's meant as a follow up to IppSec's video on this topic, with ready-to-use examples of sending an alert on both Windows and Linux using cyber deception to catch malicious behavior early.

Featured Tools

COMPONENTS DESCRIPTION LINKS
Static Badge Static Badge Static Badge Static Badge Deploy a Wireguard server with interface monitoring Ansible + Terraform
Static Badge Static Badge Static Badge Static Badge Deploy a Tailscale node Ansible + Terraform
Static Badge pfSense administration, lab, usage guide Guide
Static Badge Static Badge VMware kernel module signing for SecureBoot on Ubuntu Bash
Static Badge Static Badge Deploy auditd + laurel Ansible, Bash
Static Badge Static Badge Deploy unbound DNS resolver with DNS over TLS + logging Ansible, Bash
Static Badge Static Badge Hyper-V Enhanced Session Linux guest tools (for manual installation) Ansible, Fork
Static Badge Static Badge Deploy and manage OpenSSH Server on Windows PS Module
Static Badge Static Badge Deploy and manage Sysinternals + Sysmon rules on Windows PS Script
Static Badge Static Badge Windows Sandbox configuration files and startup scripts WSB Files

Iā€™m currently working on...

  • šŸŽÆ Other pentesting certifications
  • šŸ—ļø Git, infrastructure, automation
  • šŸ› ļø Building utilites for everyday use

straysheep-dev's Projects

aclpwn.py icon aclpwn.py

Active Directory ACL exploitation with BloodHound

adgenerator icon adgenerator

Active Directory Generator files for Movement, Pivoting, and Persistence for Pentesters and Ethical Hackers.

adokit icon adokit

Azure DevOps Services Attack Toolkit

ai-exploits icon ai-exploits

A collection of real world AI/ML exploits for responsibly disclosed vulnerabilities

alert-service icon alert-service

Send an alert (to Discord, Slack, or any webhook) based on a condition.

attack_range icon attack_range

A tool that allows you to create vulnerable instrumented local or cloud environments to simulate attacks against and collect the data into Splunk

auditd icon auditd

Best Practice Auditd Configuration

authlogparser icon authlogparser

AuthLogParser is a powerful DFIR tool designed specifically for analyzing Linux authentication logs, commonly known as auth.log

avml icon avml

AVML - Acquire Volatile Memory for Linux

backupoperatortoda icon backupoperatortoda

From an account member of the group Backup Operators to Domain Admin without RDP or WinRM on the Domain Controller

backupoperatortoolkit icon backupoperatortoolkit

The BackupOperatorToolkit contains different techniques allowing you to escalate from Backup Operator to Domain Admin

bacnet-stack icon bacnet-stack

BACnet Protocol Stack library provides a BACnet application layer, network layer and media access (MAC) layer communications services.

bettercap icon bettercap

The Swiss Army knife for 802.11, BLE, IPv4 and IPv6 networks reconnaissance and MITM attacks.

bloodyad icon bloodyad

BloodyAD is an Active Directory Privilege Escalation Framework

capa icon capa

The FLARE team's open-source tool to identify capabilities in executable files.

certify icon certify

Active Directory certificate abuse.

certipy icon certipy

Tool for Active Directory Certificate Services enumeration and abuse

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    šŸ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. šŸ“ŠšŸ“ˆšŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ā¤ļø Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.