BlackwidowA Python based web application scanner to gather OSINT and fuzz for OWASP vulnerabilities on a target website.
Stars: ✭ 887 (+651.69%)
NosqlmapAutomated NoSQL database enumeration and web application exploitation tool.
Stars: ✭ 1,928 (+1533.9%)
VhostscanA virtual host scanner that performs reverse lookups, can be used with pivot tools, detect catch-all scenarios, work around wildcards, aliases and dynamic default pages.
Stars: ✭ 767 (+550%)
BigbountyreconBigBountyRecon tool utilises 58 different techniques using various Google dorks and open source tools to expedite the process of initial reconnaissance on the target organisation.
Stars: ✭ 541 (+358.47%)
magicReconMagicRecon is a powerful shell script to maximize the recon and data collection process of an objective and finding common vulnerabilities, all this saving the results obtained in an organized way in directories and with various formats.
Stars: ✭ 478 (+305.08%)
RmiscoutRMIScout uses wordlist and bruteforce strategies to enumerate Java RMI functions and exploit RMI parameter unmarshalling vulnerabilities
Stars: ✭ 296 (+150.85%)
SudomySudomy is a subdomain enumeration tool to collect subdomains and analyzing domains performing automated reconnaissance (recon) for bug hunting / pentesting
Stars: ✭ 1,572 (+1232.2%)
KnaryA simple HTTP(S) and DNS Canary bot with Slack/Discord/MS Teams & Pushover support
Stars: ✭ 187 (+58.47%)
RenginereNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines, recon data correlation and organization, continuous monitoring, backed by a database, and simple yet intuitive User Interface. reNgine makes it easy for penetration testers to gather reconnaissance with…
Stars: ✭ 3,439 (+2814.41%)
tugareconPentest: Subdomains enumeration tool for penetration testers.
Stars: ✭ 142 (+20.34%)
jsleaka Go code to detect leaks in JS files via regex patterns
Stars: ✭ 111 (-5.93%)
MobilehackersweaponsMobile Hacker's Weapons / A collection of cool tools used by Mobile hackers. Happy hacking , Happy bug-hunting
Stars: ✭ 170 (+44.07%)
ReconnoitreA security tool for multithreaded information gathering and service enumeration whilst building directory structures to store results, along with writing out recommendations for further testing.
Stars: ✭ 1,824 (+1445.76%)
SuperLibraryInformation Security Library
Stars: ✭ 60 (-49.15%)
docusAndroid application for scanning and managing documents.
Stars: ✭ 39 (-66.95%)
DirsearchWeb path scanner
Stars: ✭ 7,246 (+6040.68%)
Defaultcreds Cheat SheetOne place for all the default credentials to assist the Blue/Red teamers activities on finding devices with default password 🛡️
Stars: ✭ 1,949 (+1551.69%)
RaccoonA high performance offensive security tool for reconnaissance and vulnerability scanning
Stars: ✭ 2,312 (+1859.32%)
Security ToolsCollection of small security tools, mostly in Bash and Python. CTFs, Bug Bounty and other stuff.
Stars: ✭ 509 (+331.36%)
XspearPowerfull XSS Scanning and Parameter analysis tool&gem
Stars: ✭ 583 (+394.07%)
webapp-wordlistsThis repository contains wordlists for each versions of common web applications and content management systems (CMS). Each version contains a wordlist of all the files directories for this version.
Stars: ✭ 306 (+159.32%)
nuubiNuubi Tools (Information-ghatering|Scanner|Recon.)
Stars: ✭ 76 (-35.59%)
Vaultswiss army knife for hackers
Stars: ✭ 346 (+193.22%)
cf-checkCloudFlare Checker written in Go
Stars: ✭ 147 (+24.58%)
Dalfox🌘🦊 DalFox(Finder Of XSS) / Parameter Analysis and XSS Scanning tool based on golang
Stars: ✭ 791 (+570.34%)
SudomySudomy is a subdomain enumeration tool to collect subdomains and analyzing domains performing automated reconnaissance (recon) for bug hunting / pentesting
Stars: ✭ 859 (+627.97%)
Oscp Prepmy oscp prep collection
Stars: ✭ 105 (-11.02%)
Rapidscan🆕 The Multi-Tool Web Vulnerability Scanner.
Stars: ✭ 775 (+556.78%)
CrithitTakes a single wordlist item and tests it one by one over a large collection of websites before moving onto the next. Create signatures to cross-check vulnerabilities over multiple hosts.
Stars: ✭ 182 (+54.24%)
JaelesThe Swiss Army knife for automated Web Application Testing
Stars: ✭ 1,073 (+809.32%)
ResourcesNo description or website provided.
Stars: ✭ 38 (-67.8%)
request smugglerHttp request smuggling vulnerability scanner
Stars: ✭ 203 (+72.03%)
Recon PipelineAn automated target reconnaissance pipeline.
Stars: ✭ 278 (+135.59%)
Jira-LensFast and customizable vulnerability scanner For JIRA written in Python
Stars: ✭ 185 (+56.78%)
ReconftwreconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities
Stars: ✭ 974 (+725.42%)
Webhackersweapons⚔️ Web Hacker's Weapons / A collection of cool tools used by Web hackers. Happy hacking , Happy bug-hunting
Stars: ✭ 1,205 (+921.19%)
Ssh keyscannerssh public host key scanner using shodan
Stars: ✭ 102 (-13.56%)
BulwarkAn organizational asset and vulnerability management tool, with Jira integration, designed for generating application security reports.
Stars: ✭ 113 (-4.24%)
Nuclei TemplatesCommunity curated list of templates for the nuclei engine to find security vulnerabilities.
Stars: ✭ 1,354 (+1047.46%)
Edge detectionThis is a flutter plugin to detect edges in a live camera, take the picture of detected edges object, crop it, and save.
Stars: ✭ 116 (-1.69%)
RoutersploitExploitation Framework for Embedded Devices
Stars: ✭ 9,866 (+8261.02%)
ArlARL(Asset Reconnaissance Lighthouse)资产侦察灯塔系统旨在快速侦察与目标关联的互联网资产,构建基础资产信息库。 协助甲方安全团队或者渗透测试人员有效侦察和检索资产,发现存在的薄弱点和攻击面。
Stars: ✭ 1,357 (+1050%)
K8portscan跨平台大型网络端口扫描器(支持批量A段/B段/C段/IP列表(TXT)/端口列表,Banner识别比S扫描器加强版更准)
Stars: ✭ 99 (-16.1%)
OseeCollection of resources for my preparation to take the OSEE certification.
Stars: ✭ 98 (-16.95%)
HackeronedbThe unofficial HackerOne disclosure Timeline
Stars: ✭ 117 (-0.85%)
QuickxssAutomating XSS using Bash
Stars: ✭ 113 (-4.24%)
Zzyqrcodeswifta scanner for QRCode barCode 最好用的ios二维码、条形码,扫描、生成框架,支持闪光灯,从相册获取,扫描音效等,高仿微信,微博
Stars: ✭ 97 (-17.8%)
Gf SecretsSecret and/ credential patterns used for gf.
Stars: ✭ 96 (-18.64%)
GxssA tool to check a bunch of URLs that contain reflecting params.
Stars: ✭ 115 (-2.54%)
DesktopGo/HTML/CSS/JS Desktop application scaffold.
Stars: ✭ 109 (-7.63%)
ErodirA fast web directory/file enumeration tool written in Rust
Stars: ✭ 94 (-20.34%)