FaradayFaraday introduces a new concept - IPE (Integrated Penetration-Test Environment) a multiuser Penetration test IDE. Designed for distributing, indexing, and analyzing the data generated during a security audit.
Stars: ✭ 3,198 (+621.9%)
PwndocPentest Report Generator
Stars: ✭ 417 (-5.87%)
ResourcesA Storehouse of resources related to Bug Bounty Hunting collected from different sources. Latest guides, tools, methodology, platforms tips, and tricks curated by us.
Stars: ✭ 62 (-86%)
CrithitTakes a single wordlist item and tests it one by one over a large collection of websites before moving onto the next. Create signatures to cross-check vulnerabilities over multiple hosts.
Stars: ✭ 182 (-58.92%)
HabuHacking Toolkit
Stars: ✭ 635 (+43.34%)
Zap CliA simple tool for interacting with OWASP ZAP from the commandline.
Stars: ✭ 166 (-62.53%)
CameradarCameradar hacks its way into RTSP videosurveillance cameras
Stars: ✭ 2,775 (+526.41%)
Infosec referenceAn Information Security Reference That Doesn't Suck; https://rmusser.net/git/admin-2/Infosec_Reference for non-MS Git hosted version.
Stars: ✭ 4,162 (+839.5%)
NmapIdiomatic nmap library for go developers
Stars: ✭ 391 (-11.74%)
SecuritymanageframworkSecurity Manage Framwork is a security management platform for enterprise intranet, which includes asset management, vulnerability management, account management, knowledge base management, security scanning automation function modules, and can be used for internal security management. This platform is designed to help Party A with fewer security personnel, complicated business lines, difficult periodic inspection and low automation to better achieve internal safety management.
Stars: ✭ 378 (-14.67%)
RenginereNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines, recon data correlation and organization, continuous monitoring, backed by a database, and simple yet intuitive User Interface. reNgine makes it easy for penetration testers to gather reconnaissance with…
Stars: ✭ 3,439 (+676.3%)
Horn3tPowerful Visual Subdomain Enumeration at the Click of a Mouse
Stars: ✭ 120 (-72.91%)
Passphrase WordlistPassphrase wordlist and hashcat rules for offline cracking of long, complex passwords
Stars: ✭ 556 (+25.51%)
Red Team Curation ListA list to discover work of red team tooling and methodology for penetration testing and security assessment
Stars: ✭ 68 (-84.65%)
ArchstrikeAn Arch Linux repository for security professionals and enthusiasts. Done the Arch Way and optimized for i686, x86_64, ARMv6, ARMv7 and ARMv8.
Stars: ✭ 401 (-9.48%)
DirsearchWeb path scanner
Stars: ✭ 7,246 (+1535.67%)
GorsairGorsair hacks its way into remote docker containers that expose their APIs
Stars: ✭ 678 (+53.05%)
Xunfeng巡风是一款适用于企业内网的漏洞快速应急,巡航扫描系统。
Stars: ✭ 3,131 (+606.77%)
Pentest NotesCollection of Pentest Notes and Cheatsheets from a lot of repos (SofianeHamlaoui,dostoevsky,mantvydasb,adon90,BriskSec)
Stars: ✭ 89 (-79.91%)
Awesome Shodan Queries🔍 A collection of interesting, funny, and depressing search queries to plug into shodan.io 👩💻
Stars: ✭ 2,758 (+522.57%)
RspetRSPET (Reverse Shell and Post Exploitation Tool) is a Python based reverse shell equipped with functionalities that assist in a post exploitation scenario.
Stars: ✭ 251 (-43.34%)
LscriptThe LAZY script will make your life easier, and of course faster.
Stars: ✭ 3,056 (+589.84%)
BusterAn advanced tool for email reconnaissance
Stars: ✭ 387 (-12.64%)
A Red Teamer DiariesRedTeam/Pentest notes and experiments tested on several infrastructures related to professional engagements.
Stars: ✭ 382 (-13.77%)
default-http-login-hunterLogin hunter of default credentials for administrative web interfaces leveraging NNdefaccts dataset.
Stars: ✭ 285 (-35.67%)
PyParser-CVEMulti source CVE/exploit parser.
Stars: ✭ 25 (-94.36%)
MetabigorIntelligence tool but without API key
Stars: ✭ 424 (-4.29%)
Darkspiritz🌔 Official Repository for DarkSpiritz Penetration Framework | Written in Python 🐍
Stars: ✭ 219 (-50.56%)
OtsecaOpen source security auditing tool to search and dump system configuration. It allows you to generate reports in HTML or RAW-HTML formats.
Stars: ✭ 416 (-6.09%)
tugareconPentest: Subdomains enumeration tool for penetration testers.
Stars: ✭ 142 (-67.95%)
pentest-reportsCollection of penetration test reports and pentest report templates. Published by the the best security companies in the world.
Stars: ✭ 111 (-74.94%)
Capsulecorp PentestVagrant VirtualBox environment for conducting an internal network penetration test
Stars: ✭ 214 (-51.69%)
urldedupePass in a list of URLs with query strings, get back a unique list of URLs and query string combinations
Stars: ✭ 208 (-53.05%)
TIWAPTotally Insecure Web Application Project (TIWAP)
Stars: ✭ 137 (-69.07%)
pwn-pulseExploit for Pulse Connect Secure SSL VPN arbitrary file read vulnerability (CVE-2019-11510)
Stars: ✭ 126 (-71.56%)
ggtfobinsGet GTFOBins info about a given exploit from the command line
Stars: ✭ 27 (-93.91%)
vsauditVOIP Security Audit Framework
Stars: ✭ 104 (-76.52%)
MailRipV3SMTP and IMAP checker / cracker for mailpass combolists with a user-friendly GUI, automated inbox test and many more features.
Stars: ✭ 28 (-93.68%)
reconmapVulnerability assessment and penetration testing automation and reporting platform for teams.
Stars: ✭ 242 (-45.37%)
FfufFast web fuzzer written in Go
Stars: ✭ 5,687 (+1183.75%)
LnkupGenerates malicious LNK file payloads for data exfiltration
Stars: ✭ 205 (-53.72%)
S3ScanScript to spider a website and find publicly open S3 buckets
Stars: ✭ 21 (-95.26%)
oscp-omnibusA collection of resources I'm using while working toward the OSCP
Stars: ✭ 46 (-89.62%)
maalikFeature-rich Post Exploitation Framework with Network Pivoting capabilities.
Stars: ✭ 75 (-83.07%)
ApkurlgrepExtract endpoints from APK files
Stars: ✭ 405 (-8.58%)
YAPSYet Another PHP Shell - The most complete PHP reverse shell
Stars: ✭ 35 (-92.1%)
vulnerabilitiesList of every possible vulnerabilities in computer security.
Stars: ✭ 14 (-96.84%)
ElliotA pentesting tool inspired by mr robot and derived by zphisher
Stars: ✭ 23 (-94.81%)
SimpleKeyloggerSimple Keylogger with smtp to send emails on your account using python works on linux and Windows
Stars: ✭ 32 (-92.78%)
Deep-InsideCommand line tool that allows you to explore IoT devices by using Shodan API.
Stars: ✭ 22 (-95.03%)
SifterSifter aims to be a fully loaded Op Centre for Pentesters
Stars: ✭ 403 (-9.03%)
QuickScanPort scanning and domain utility.
Stars: ✭ 26 (-94.13%)
DorknetSelenium powered Python script to automate searching for vulnerable web apps.
Stars: ✭ 256 (-42.21%)
ArachniWeb Application Security Scanner Framework
Stars: ✭ 2,942 (+564.11%)
aquatoneA Tool for Domain Flyovers
Stars: ✭ 43 (-90.29%)