GetaltnameExtract subdomains from SSL certificates in HTTPS sites.
Stars: ✭ 320 (+1130.77%)
Pwncatpwncat - netcat on steroids with Firewall, IDS/IPS evasion, bind and reverse shell, self-injecting shell and port forwarding magic - and its fully scriptable with Python (PSE)
Stars: ✭ 904 (+3376.92%)
SipptsSet of tools to audit SIP based VoIP Systems
Stars: ✭ 116 (+346.15%)
JusttryharderJustTryHarder, a cheat sheet which will aid you through the PWK course & the OSCP Exam. (Inspired by PayloadAllTheThings)
Stars: ✭ 450 (+1630.77%)
KaboomA tool to automate penetration tests
Stars: ✭ 322 (+1138.46%)
offensive-docker-vpsCreate a VPS on Google Cloud Platform or Digital Ocean easily with Offensive Docker included to launch assessment to the targets.
Stars: ✭ 66 (+153.85%)
HabuHacking Toolkit
Stars: ✭ 635 (+2342.31%)
Ssrf TestingSSRF (Server Side Request Forgery) testing resources
Stars: ✭ 1,718 (+6507.69%)
JwtxploiterA tool to test security of json web token
Stars: ✭ 130 (+400%)
Thc ArchiveAll releases of the security research group (a.k.a. hackers) The Hacker's Choice
Stars: ✭ 474 (+1723.08%)
TrigmapA wrapper for Nmap to quickly run network scans
Stars: ✭ 132 (+407.69%)
CloakifyCloakifyFactory - Data Exfiltration & Infiltration In Plain Sight; Convert any filetype into list of everyday strings, using Text-Based Steganography; Evade DLP/MLS Devices, Defeat Data Whitelisting Controls, Social Engineering of Analysts, Evade AV Detection
Stars: ✭ 1,136 (+4269.23%)
YAPSYet Another PHP Shell - The most complete PHP reverse shell
Stars: ✭ 35 (+34.62%)
Dumpsterfire"Security Incidents In A Box!" A modular, menu-driven, cross-platform tool for building customized, time-delayed, distributed security events. Easily create custom event chains for Blue- & Red Team drills and sensor / alert mapping. Red Teams can create decoy incidents, distractions, and lures to support and scale their operations. Build event sequences ("narratives") to simulate realistic scenarios and generate corresponding network and filesystem artifacts.
Stars: ✭ 775 (+2880.77%)
EvillimiterTool that monitors, analyzes and limits the bandwidth of devices on the local network without administrative access.
Stars: ✭ 764 (+2838.46%)
CloudbruteAwesome cloud enumerator
Stars: ✭ 268 (+930.77%)
SusanooA REST API security testing framework.
Stars: ✭ 287 (+1003.85%)
Findom XssA fast DOM based XSS vulnerability scanner with simplicity.
Stars: ✭ 310 (+1092.31%)
DorknetSelenium powered Python script to automate searching for vulnerable web apps.
Stars: ✭ 256 (+884.62%)
CcatCloud Container Attack Tool (CCAT) is a tool for testing security of container environments.
Stars: ✭ 300 (+1053.85%)
VajraVajra is a highly customizable target and scope based automated web hacking framework to automate boring recon tasks and same scans for multiple target during web applications penetration testing.
Stars: ✭ 269 (+934.62%)
ExploitpackExploit Pack -The next generation exploit framework
Stars: ✭ 728 (+2700%)
PerunPerun是一款主要适用于乙方安服、渗透测试人员和甲方RedTeam红队人员的网络资产漏洞扫描器/扫描框架
Stars: ✭ 773 (+2873.08%)
SubscraperSubdomain enumeration through various techniques
Stars: ✭ 265 (+919.23%)
WhatwebNext generation web scanner
Stars: ✭ 3,503 (+13373.08%)
OverlordOverlord - Red Teaming Infrastructure Automation
Stars: ✭ 258 (+892.31%)
SpoilerwallSpoilerwall introduces a brand new concept in the field of network hardening. Avoid being scanned by spoiling movies on all your ports!
Stars: ✭ 754 (+2800%)
Suid3numA standalone python script which utilizes python's built-in modules to enumerate SUID binaries, separate default binaries from custom binaries, cross-match those with bins in GTFO Bin's repository & auto-exploit those, all with colors! ( ͡~ ͜ʖ ͡°)
Stars: ✭ 342 (+1215.38%)
Impost3r👻Impost3r -- A linux password thief
Stars: ✭ 355 (+1265.38%)
Awesome OscpA curated list of awesome OSCP resources
Stars: ✭ 804 (+2992.31%)
DiamorphineLKM rootkit for Linux Kernels 2.6.x/3.x/4.x/5.x (x86/x86_64 and ARM64)
Stars: ✭ 725 (+2688.46%)
Black Hat RustApplied offensive security with Rust - Early access - https://academy.kerkour.com/black-hat-rust?coupon=GITHUB
Stars: ✭ 331 (+1173.08%)
E2guardianE2guardian is a web content filter that can work in proxy, transparent or icap server modes
Stars: ✭ 340 (+1207.69%)
Offensive DockerOffensive Docker is an image with the more used offensive tools to create an environment easily and quickly to launch assessment to the targets.
Stars: ✭ 328 (+1161.54%)
Top25 ParameterFor basic researches, top 25 vulnerability parameters that can be used in automation tools or manual recon. 🛡️⚔️🧙
Stars: ✭ 388 (+1392.31%)
RdpasssprayPython3 tool to perform password spraying using RDP
Stars: ✭ 368 (+1315.38%)
tomcter😹 Tomcter is a python tool developed to bruteforce Apache Tomcat manager login with Apache Tomcat default credentials.
Stars: ✭ 18 (-30.77%)
SifterSifter aims to be a fully loaded Op Centre for Pentesters
Stars: ✭ 403 (+1450%)
OpensslOpenSSL bindings for Go
Stars: ✭ 397 (+1426.92%)
PyopensslA Python wrapper around the OpenSSL library
Stars: ✭ 701 (+2596.15%)
EhtoolsWi-Fi tools keep getting more and more accessible to beginners, and the Ehtools Framework is a framework of serious penetration tools that can be explored easily from within it. This powerful and simple tool can be used for everything from installing new add-ons to grabbing a WPA handshake in a matter of seconds. Plus, it's easy to install, set up, and utilize.
Stars: ✭ 422 (+1523.08%)
GoohakAutomatically Launch Google Hacking Queries Against A Target Domain
Stars: ✭ 432 (+1561.54%)
ReverseapkQuickly analyze and reverse engineer Android packages
Stars: ✭ 419 (+1511.54%)
NullinuxInternal penetration testing tool for Linux that can be used to enumerate OS information, domain information, shares, directories, and users through SMB.
Stars: ✭ 451 (+1634.62%)
Sn1perAttack Surface Management Platform | Sn1perSecurity LLC
Stars: ✭ 4,897 (+18734.62%)
Dictionary Of PentestingDictionary collection project such as Pentesing, Fuzzing, Bruteforce and BugBounty. 渗透测试、SRC漏洞挖掘、爆破、Fuzzing等字典收集项目。
Stars: ✭ 492 (+1792.31%)
Stowaway👻Stowaway -- Multi-hop Proxy Tool for pentesters
Stars: ✭ 500 (+1823.08%)
DirbleFast directory scanning and scraping tool
Stars: ✭ 468 (+1700%)
YasuoA ruby script that scans for vulnerable & exploitable 3rd-party web applications on a network
Stars: ✭ 517 (+1888.46%)
Lockdoor Framework🔐 Lockdoor Framework : A Penetration Testing framework with Cyber Security Resources
Stars: ✭ 677 (+2503.85%)
Testssl.shTesting TLS/SSL encryption anywhere on any port
Stars: ✭ 5,676 (+21730.77%)
DirsearchWeb path scanner
Stars: ✭ 7,246 (+27769.23%)
BlackmambaC2/post-exploitation framework
Stars: ✭ 544 (+1992.31%)