wgpsec/AboutSecurity

Everything for pentest. | A penetration testing knowledge base that captures security methodologies in an AI Agent-executable format.

This repository also configures its own agents. See what AboutSecurity tells them →

1.7kStars on the repository
200Mods indexed here, across every type
8d agoLast push, which is what freshness is scored on
noneNo LICENSE: all rights reserved, so bodies are not copied

kerberoast-attack

169

wgpsec/AboutSecurity

Skill Claude CodeCodex

A guide to Kerberoasting and AS-REP Roasting, techniques for requesting or capturing Active Directory authentication data and cracking it offline. Active Directory is Microsoft's system for managing users, computers, and access in a Windows domain.

not rated 1.7k +12 8d ago A SkillSpector: warn 72 tokens

wgpsec/AboutSecurity

Skill Claude CodeCodex

A collection of advanced techniques for attacking Kerberos, the authentication protocol commonly used by Windows domains. It goes beyond basic ticket-cracking and delegation attacks.

not rated 1.7k +12 8d ago A SkillSpector: warn 177 tokens

lateral-movement

171

wgpsec/AboutSecurity

Skill Claude CodeCodex

A guide to moving from one compromised computer to another by using passwords, hashes, keys, or authentication tickets. This is called lateral movement in security testing.

not rated 1.7k +12 8d ago B 76 tokens

multi-layer-network

172

wgpsec/AboutSecurity

Skill Claude CodeCodex

A guide to moving through segmented networks by building proxies, tunnels, and port forwards across multiple hosts and firewalls.

not rated 1.7k +12 8d ago A SkillSpector: pass 93 tokens

wgpsec/AboutSecurity

Skill Claude CodeCodex

A guide to poisoning or impersonating network services to trick devices into sending authentication data or accepting an attacker as an intermediary.

not rated 1.7k +12 8d ago A SkillSpector: pass 115 tokens

ntlm-relay-attack

174

wgpsec/AboutSecurity

Skill Claude CodeCodex

A guide to NTLM relay attacks, in which authentication messages are captured and forwarded to another service to act as the victim. NTLM is an older Windows authentication protocol.

not rated 1.7k +12 8d ago A SkillSpector: warn 96 tokens

oa-system-attack

175

wgpsec/AboutSecurity

Skill Claude CodeCodex

A guide to exploiting vulnerabilities in Chinese enterprise office and internal-network systems, including Seeyon, Weaver, Yonyou, Landray, and others. These office systems commonly handle internal business workflows and data.

not rated 1.7k +12 8d ago A SkillSpector: pass 116 tokens

sccm-mecm-attack

176

wgpsec/AboutSecurity

Skill Claude CodeCodex

A guide to assessing Microsoft SCCM, also called MECM or Configuration Manager, which centrally manages Windows computers, software, and deployment tasks.

not rated 1.7k +12 8d ago A SkillSpector: warn 104 tokens

c2-beacon-analysis

177

wgpsec/AboutSecurity

Skill Claude CodeCodex

A guide to extracting and examining configuration details from Cobalt Strike, Sliver, or Havoc command-and-control samples, memory dumps, and traffic. Command-and-control systems let an attacker remotely operate compromised machines.

not rated 1.7k +12 8d ago A SkillSpector: warn 94 tokens

wgpsec/AboutSecurity

Skill Claude CodeCodex

A guide to analysing suspected malware in Windows, Linux, or Apple executable files, as well as malicious code found in memory dumps. It combines examining files without running them, observing them while they run, reverse engineering, and collecting indicators of compromise.

not rated 1.7k +12 8d ago A SkillSpector: pass 83 tokens

wgpsec/AboutSecurity

Skill Claude CodeCodex

A guide to implementing techniques that make malicious software harder for automated sandboxes to analyse. A sandbox is an isolated environment that runs suspicious programs for observation.

not rated 1.7k +12 8d ago A SkillSpector: warn 74 tokens

wgpsec/AboutSecurity

Skill Claude CodeCodex

A guide to testing Android apps from their install packages and while they run. It covers code and manifest inspection, runtime instrumentation, network traffic, stored data, app components, WebViews, and device-protection checks.

not rated 1.7k +12 8d ago B 104 tokens

ios-exploiting

181

wgpsec/AboutSecurity

Skill Claude CodeCodex

A research guide for examining iOS operating-system components, including kernel files, with virtual devices, jailbroken phones, emulators, and binary comparison tools. Corellium is a cloud service that can run virtual iOS devices.

not rated 1.7k +12 8d ago A SkillSpector: pass 125 tokens

ios-pentesting

182

wgpsec/AboutSecurity

Skill Claude CodeCodex

A guide to choosing devices and tools for testing iPhone and iPad apps. It compares jailbroken and non-jailbroken devices, injected testing tools, and the Xcode Simulator, which runs iOS apps on a Mac.

not rated 1.7k +12 8d ago A SkillSpector: warn 105 tokens

persist-maintain

183

wgpsec/AboutSecurity

Skill Claude CodeCodex

A post-compromise guide to keeping access to Linux and Windows systems, including through web applications. It describes methods involving scheduled tasks, services, startup settings, SSH keys, registry entries, WMI, and web shells.

not rated 1.7k +12 8d ago A SkillSpector: warn 67 tokens

post-exploit-linux

184

wgpsec/AboutSecurity

Skill Claude CodeCodex

A post-compromise guide for Linux systems after a shell has been obtained through methods such as remote code execution, a web shell, or SSH. It covers finding higher privileges, credentials, and paths to other systems.

not rated 1.7k +12 8d ago D 154 tokens

post-exploit-windows

185

wgpsec/AboutSecurity

Skill Claude CodeCodex

A post-compromise guide for Windows systems after access is gained through remote code execution, a web shell, or Remote Desktop. It covers system discovery, privilege increases, credential extraction, and domain reconnaissance.

not rated 1.7k +12 8d ago A SkillSpector: warn 74 tokens

argocd-tactics

186

wgpsec/AboutSecurity

Skill Claude CodeCodex

A security-testing guide for Argo CD, a tool that deploys Kubernetes applications from Git repositories. It covers attacks involving its API, login systems, Redis cache, webhooks, and application deployments.

not rated 1.7k +12 8d ago A SkillSpector: pass 133 tokens

concourse-tactics

187

wgpsec/AboutSecurity

Skill Claude CodeCodex

A security-testing guide for Concourse CI, a system that runs automated build and deployment pipelines. It covers ways to inspect and attack exposed Concourse servers, pipelines, workers, and stored credentials.

not rated 1.7k +12 8d ago A SkillSpector: warn 119 tokens

database-tactics

188

wgpsec/AboutSecurity

Skill Claude CodeCodex

A guide to testing database services such as Redis, Microsoft SQL Server, PostgreSQL, MySQL, and MongoDB.

not rated 1.7k +12 8d ago A SkillSpector: pass 90 tokens

harbor-tactics

189

wgpsec/AboutSecurity

Skill Claude CodeCodex

A guide to testing Harbor, a private registry that stores and distributes container images.

not rated 1.7k +12 8d ago C 109 tokens

middleware-tactics

190

wgpsec/AboutSecurity

Skill Claude CodeCodex

A guide to testing web middleware and application servers such as Tomcat, WebLogic, JBoss, IIS, Nginx, and Apache.

not rated 1.7k +12 8d ago A SkillSpector: warn 84 tokens

portainer-tactics

191

wgpsec/AboutSecurity

Skill Claude CodeCodex

A guide to testing Portainer, a web interface for managing Docker and other container environments.

not rated 1.7k +12 8d ago A SkillSpector: pass 115 tokens

rabbitmq-tactics

192

wgpsec/AboutSecurity

Skill Claude CodeCodex

A guide to testing RabbitMQ message brokers for unauthorized access and misuse. RabbitMQ is software that stores and routes messages between applications.

not rated 1.7k +12 8d ago A SkillSpector: warn 120 tokens

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: