HabuHacking Toolkit
Stars: β 635 (-16.88%)
Lockdoor Frameworkπ Lockdoor Framework : A Penetration Testing framework with Cyber Security Resources
Stars: β 677 (-11.39%)
CloakifyCloakifyFactory - Data Exfiltration & Infiltration In Plain Sight; Convert any filetype into list of everyday strings, using Text-Based Steganography; Evade DLP/MLS Devices, Defeat Data Whitelisting Controls, Social Engineering of Analysts, Evade AV Detection
Stars: β 1,136 (+48.69%)
CrithitTakes a single wordlist item and tests it one by one over a large collection of websites before moving onto the next. Create signatures to cross-check vulnerabilities over multiple hosts.
Stars: β 182 (-76.18%)
Thc ArchiveAll releases of the security research group (a.k.a. hackers) The Hacker's Choice
Stars: β 474 (-37.96%)
DirsearchWeb path scanner
Stars: β 7,246 (+848.43%)
Sn1perAttack Surface Management Platform | Sn1perSecurity LLC
Stars: β 4,897 (+540.97%)
CameradarCameradar hacks its way into RTSP videosurveillance cameras
Stars: β 2,775 (+263.22%)
Cheatsheet GodPenetration Testing Reference Bank - OSCP / PTP & PTX Cheatsheet
Stars: β 3,521 (+360.86%)
HosthunterHostHunter a recon tool for discovering hostnames using OSINT techniques.
Stars: β 427 (-44.11%)
OsmedeusFully automated offensive security framework for reconnaissance and vulnerability scanning
Stars: β 3,391 (+343.85%)
SipptsSet of tools to audit SIP based VoIP Systems
Stars: β 116 (-84.82%)
Dumpsterfire"Security Incidents In A Box!" A modular, menu-driven, cross-platform tool for building customized, time-delayed, distributed security events. Easily create custom event chains for Blue- & Red Team drills and sensor / alert mapping. Red Teams can create decoy incidents, distractions, and lures to support and scale their operations. Build event sequences ("narratives") to simulate realistic scenarios and generate corresponding network and filesystem artifacts.
Stars: β 775 (+1.44%)
Scillaπ΄ββ οΈ Information Gathering tool π΄ββ οΈ DNS / Subdomains / Ports / Directories enumeration
Stars: β 116 (-84.82%)
DiamorphineLKM rootkit for Linux Kernels 2.6.x/3.x/4.x/5.x (x86/x86_64 and ARM64)
Stars: β 725 (-5.1%)
Vaultswiss army knife for hackers
Stars: β 346 (-54.71%)
WhatwebNext generation web scanner
Stars: β 3,503 (+358.51%)
ReconnoitreA security tool for multithreaded information gathering and service enumeration whilst building directory structures to store results, along with writing out recommendations for further testing.
Stars: β 1,824 (+138.74%)
Awesome Shodan Queriesπ A collection of interesting, funny, and depressing search queries to plug into shodan.io π©βπ»
Stars: β 2,758 (+260.99%)
YasuoA ruby script that scans for vulnerable & exploitable 3rd-party web applications on a network
Stars: β 517 (-32.33%)
VhostscanA virtual host scanner that performs reverse lookups, can be used with pivot tools, detect catch-all scenarios, work around wildcards, aliases and dynamic default pages.
Stars: β 767 (+0.39%)
ResourcesA Storehouse of resources related to Bug Bounty Hunting collected from different sources. Latest guides, tools, methodology, platforms tips, and tricks curated by us.
Stars: β 62 (-91.88%)
One Lin3rGives you one-liners that aids in penetration testing operations, privilege escalation and more
Stars: β 1,259 (+64.79%)
Rustscanπ€ The Modern Port Scanner π€
Stars: β 5,218 (+582.98%)
A Red Teamer DiariesRedTeam/Pentest notes and experiments tested on several infrastructures related to professional engagements.
Stars: β 382 (-50%)
NosqlmapAutomated NoSQL database enumeration and web application exploitation tool.
Stars: β 1,928 (+152.36%)
MinesweeperA Burpsuite plugin (BApp) to aid in the detection of scripts being loaded from over 23000 malicious cryptocurrency mining domains (cryptojacking).
Stars: β 162 (-78.8%)
Powershell RatPython based backdoor that uses Gmail to exfiltrate data through attachment. This RAT will help during red team engagements to backdoor any Windows machines. It tracks the user activity using screen capture and sends it to an attacker as an e-mail attachment.
Stars: β 636 (-16.75%)
WebmapA Python tool used to automate the execution of the following tools : Nmap , Nikto and Dirsearch but also to automate the report generation during a Web Penetration Testing
Stars: β 188 (-75.39%)
PacketwhisperPacketWhisper: Stealthily exfiltrate data and defeat attribution using DNS queries and text-based steganography. Avoid the problems associated with typical DNS exfiltration methods. Transfer data between systems without the communicating devices directly connecting to each other or to a common endpoint. No need to control a DNS Name Server.
Stars: β 405 (-46.99%)
FdsploitFile Inclusion & Directory Traversal fuzzing, enumeration & exploitation tool.
Stars: β 199 (-73.95%)
JwtxploiterA tool to test security of json web token
Stars: β 130 (-82.98%)
RaccoonA high performance offensive security tool for reconnaissance and vulnerability scanning
Stars: β 2,312 (+202.62%)
Awesome BbhtA bash script that will automatically install a list of bug hunting tools that I find interesting for recon, exploitation, etc. (minus burp) For Ubuntu/Debain.
Stars: β 190 (-75.13%)
InterlaceEasily turn single threaded command line applications into a fast, multi-threaded application with CIDR and glob support.
Stars: β 760 (-0.52%)
PentestkitUseful tools and scripts during Penetration Testing engagements
Stars: β 463 (-39.4%)
Capsulecorp PentestVagrant VirtualBox environment for conducting an internal network penetration test
Stars: β 214 (-71.99%)
Icg AutoexploiterbotWordpress π₯ Joomla π₯ Drupal π₯ OsCommerce π₯ Prestashop π₯ Opencart π₯
Stars: β 242 (-68.32%)
Deep-InsideCommand line tool that allows you to explore IoT devices by using Shodan API.
Stars: β 22 (-97.12%)
YAPSYet Another PHP Shell - The most complete PHP reverse shell
Stars: β 35 (-95.42%)
ExploitpackExploit Pack -The next generation exploit framework
Stars: β 728 (-4.71%)
Network Threats TaxonomyMachine Learning based Intrusion Detection Systems are difficult to evaluate due to a shortage of datasets representing accurately network traffic and their associated threats. In this project we attempt at solving this problem by presenting two taxonomies
Stars: β 79 (-89.66%)
GobyAttack surface mapping
Stars: β 446 (-41.62%)
HackerproAll in One Hacking Tool for Linux & Android (Termux). Make your linux environment into a Hacking Machine. Hackers are welcome in our blog
Stars: β 474 (-37.96%)
SusanooA REST API security testing framework.
Stars: β 287 (-62.43%)
WebkillerTool Information Gathering Write By Python.
Stars: β 300 (-60.73%)
Stowawayπ»Stowaway -- Multi-hop Proxy Tool for pentesters
Stars: β 500 (-34.55%)
JusttryharderJustTryHarder, a cheat sheet which will aid you through the PWK course & the OSCP Exam. (Inspired by PayloadAllTheThings)
Stars: β 450 (-41.1%)
Security ToolsCollection of small security tools, mostly in Bash and Python. CTFs, Bug Bounty and other stuff.
Stars: β 509 (-33.38%)
Evil SsdpSpoof SSDP replies and create fake UPnP devices to phish for credentials and NetNTLM challenge/response.
Stars: β 204 (-73.3%)
CloudbruteAwesome cloud enumerator
Stars: β 268 (-64.92%)
Linkedin2usernameOSINT Tool: Generate username lists for companies on LinkedIn
Stars: β 504 (-34.03%)
Badkarmanetwork reconnaissance toolkit
Stars: β 353 (-53.8%)
Impost3rπ»Impost3r -- A linux password thief
Stars: β 355 (-53.53%)