All Categories → Security → penetration-testing

Top 371 penetration-testing open source projects

Scantron
A distributed nmap / masscan scanning framework complete with an API client for automation workflows
Whonow
A "malicious" DNS server for executing DNS Rebinding attacks on the fly (public instance running on rebind.network:53)
Awesome Termux Hacking
⚡️An awesome list of the best Termux hacking tools
Linkedin2username
OSINT Tool: Generate username lists for companies on LinkedIn
Commando Vm
Complete Mandiant Offensive VM (Commando VM), a fully customizable Windows-based pentesting virtual machine distribution. [email protected]
Iprotate burp extension
Extension for Burp Suite which uses AWS API Gateway to rotate your IP on every request.
Hackerpro
All in One Hacking Tool for Linux & Android (Termux). Make your linux environment into a Hacking Machine. Hackers are welcome in our blog
Thc Archive
All releases of the security research group (a.k.a. hackers) The Hacker's Choice
Chimera
Chimera is a (shiny and very hack-ish) PowerShell obfuscation script designed to bypass AMSI and commercial antivirus solutions.
Pentestkit
Useful tools and scripts during Penetration Testing engagements
Justtryharder
JustTryHarder, a cheat sheet which will aid you through the PWK course & the OSCP Exam. (Inspired by PayloadAllTheThings)
Vanquish
Vanquish is Kali Linux based Enumeration Orchestrator. Vanquish leverages the opensource enumeration tools on Kali to perform multiple active information gathering phases.
Dradis Ce
Dradis Framework: Colllaboration and reporting for IT Security teams
Cloud enum
Multi-cloud OSINT tool. Enumerate public resources in AWS, Azure, and Google Cloud.
Powerops
PowerShell Runspace Portable Post Exploitation Tool aimed at making Penetration Testing with PowerShell "easier"
Archstrike
An Arch Linux repository for security professionals and enthusiasts. Done the Arch Way and optimized for i686, x86_64, ARMv6, ARMv7 and ARMv8.
Stegcracker
Steganography brute-force utility to uncover hidden data inside files
Ghostwriter
The SpecterOps project management and reporting engine
Slackor
A Golang implant that uses Slack as a command and control server
Cerberus
一款功能强大的漏洞扫描器,子域名爆破使用aioDNS,asyncio异步快速扫描,覆盖目标全方位资产进行批量漏洞扫描,中间件信息收集,自动收集ip代理,探测Waf信息时自动使用来保护本机真实Ip,在本机Ip被Waf杀死后,自动切换代理Ip进行扫描,Waf信息收集(国内外100+款waf信息)包括安全狗,云锁,阿里云,云盾,腾讯云等,提供部分已知waf bypass 方案,中间件漏洞检测(Thinkphp,weblogic等 CVE-2018-5955,CVE-2018-12613,CVE-2018-11759等),支持SQL注入, XSS, 命令执行,文件包含, ssrf 漏洞扫描, 支持自定义漏洞邮箱推送功能
Buster
An advanced tool for email reconnaissance
Vulnhub Ctf Writeups
This cheasheet is aimed at the CTF Players and Beginners to help them sort Vulnhub Labs. This list contains all the writeups available on hackingarticles.
Vulnerable Ad
Create a vulnerable active directory that's allowing you to test most of the active directory attacks in a local lab
Sitadel
Web Application Security Scanner
Hunter
(l)user hunter using WinAPI calls only
Awesome Infosec
A curated list of awesome infosec courses and training resources.
Osintgram
Osintgram is a OSINT tool on Instagram. It offers an interactive shell to perform analysis on Instagram account of any users by its nickname
Conptyshell
ConPtyShell - Fully Interactive Reverse Shell for Windows
Hackdroid
Android Apps, Roms and Platforms for Pentesting
Sonarsearch
A MongoDB importer and API for Project Sonars DNS datasets
Teamviewer permissions hook v1
A proof of concept injectable C++ dll, that uses naked inline hooking and direct memory modification to change your TeamViewer permissions.
Dnscat2 Powershell
A Powershell client for dnscat2, an encrypted DNS command and control tool.
Novahot
A webshell framework for penetration testers.
East
Exploits and Security Tools Framework 2.0.1
Sitebroker
A cross-platform python based utility for information gathering and penetration testing automation!
Faraday
Faraday introduces a new concept - IPE (Integrated Penetration-Test Environment) a multiuser Penetration test IDE. Designed for distributing, indexing, and analyzing the data generated during a security audit.
Penetration testing poc
渗透测试有关的POC、EXP、脚本、提权、小工具等---About penetration-testing python-script poc getshell csrf xss cms php-getshell domainmod-xss penetration-testing-poc csrf-webshell cobub-razor cve rce sql sql-poc poc-exp bypass oa-getshell cve-cms
181-240 of 371 penetration-testing projects