M4ngl3m3Common password pattern generator using strings list
Stars: ✭ 103 (-33.55%)
BadpodsA collection of manifests that will create pods with elevated privileges.
Stars: ✭ 93 (-40%)
PakuriPenetration test Achieve Knowledge Unite Rapid Interface
Stars: ✭ 125 (-19.35%)
Punk.pyunix SSH post-exploitation 1337 tool
Stars: ✭ 107 (-30.97%)
ThecollectiveThe Collective. A repo for a collection of red-team projects found mostly on Github.
Stars: ✭ 85 (-45.16%)
OscprepoA list of commands, scripts, resources, and more that I have gathered and attempted to consolidate for use as OSCP (and more) study material. Commands in 'Usefulcommands' Keepnote. Bookmarks and reading material in 'BookmarkList' CherryTree. Reconscan Py2 and Py3. Custom ISO building.
Stars: ✭ 1,916 (+1136.13%)
YamsA collection of Ansible roles for automating infosec builds.
Stars: ✭ 98 (-36.77%)
Information SecurityA place where I can create, collect and share tooling, resources and knowledge about information security.
Stars: ✭ 135 (-12.9%)
RoadmapGitBook: OSCP RoadMap
Stars: ✭ 89 (-42.58%)
TelekillerA Tools Session Hijacking And Stealer Local Passcode Telegram Windows
Stars: ✭ 122 (-21.29%)
Mitm Scripts🔄 A collection of mitmproxy inline scripts
Stars: ✭ 109 (-29.68%)
Mssqli DuetSQL injection script for MSSQL that extracts domain users from an Active Directory environment based on RID bruteforcing
Stars: ✭ 82 (-47.1%)
Oscp Prepmy oscp prep collection
Stars: ✭ 105 (-32.26%)
Security ScriptsA collection of public offensive and defensive security related scripts for InfoSec students.
Stars: ✭ 101 (-34.84%)
PidrilaPython Interactive Deepweb-oriented Rapid Intelligent Link Analyzer
Stars: ✭ 125 (-19.35%)
Ssh MitmSSH man-in-the-middle tool
Stars: ✭ 1,328 (+756.77%)
AstraAutomated Security Testing For REST API's
Stars: ✭ 1,898 (+1124.52%)
Flask UnsignCommand line tool to fetch, decode, brute-force and craft session cookies of a Flask application by guessing secret keys.
Stars: ✭ 90 (-41.94%)
Black WidowGUI based offensive penetration testing tool (Open Source)
Stars: ✭ 124 (-20%)
Pentest NotesCollection of Pentest Notes and Cheatsheets from a lot of repos (SofianeHamlaoui,dostoevsky,mantvydasb,adon90,BriskSec)
Stars: ✭ 89 (-42.58%)
XssmapXSSMap 是一款基于 Python3 开发用于检测 XSS 漏洞的工具
Stars: ✭ 134 (-13.55%)
Gitjacker🔪 Leak git repositories from misconfigured websites
Stars: ✭ 1,249 (+705.81%)
Oscp AutomationA collection of personal scripts used in hacking excercises.
Stars: ✭ 118 (-23.87%)
Wooyunwooyun public information backup
Stars: ✭ 112 (-27.74%)
HoundsploitAn advanced graphical search engine for Exploit-DB
Stars: ✭ 81 (-47.74%)
Buffer overflowDon't let buffer overflows overflow your mind
Stars: ✭ 131 (-15.48%)
Awesome HackingA collection of various awesome lists for hackers, pentesters and security researchers
Stars: ✭ 48,038 (+30892.26%)
SilentbridgeSilentbridge is a toolkit for bypassing 802.1x-2010 and 802.1x-2004.
Stars: ✭ 136 (-12.26%)
FuseA penetration testing tool for finding file upload bugs (NDSS 2020)
Stars: ✭ 147 (-5.16%)
VailynA phased, evasive Path Traversal + LFI scanning & exploitation tool in Python
Stars: ✭ 103 (-33.55%)
JwtxploiterA tool to test security of json web token
Stars: ✭ 130 (-16.13%)
KeyeKeye is a reconnaissance tool that was written in Python with SQLite3 integrated. After adding a single URL, or a list of URLs, it will make a request to these URLs and try to detect changes based on their response's body length.
Stars: ✭ 101 (-34.84%)
ReconnoitreA security tool for multithreaded information gathering and service enumeration whilst building directory structures to store results, along with writing out recommendations for further testing.
Stars: ✭ 1,824 (+1076.77%)
VsauditVOIP Security Audit Framework
Stars: ✭ 97 (-37.42%)
Awesome Hacking ResourcesA collection of hacking / penetration testing resources to make you better!
Stars: ✭ 11,466 (+7297.42%)
ErodirA fast web directory/file enumeration tool written in Rust
Stars: ✭ 94 (-39.35%)
PhpvulnAudit tool to find common vulnerabilities in PHP source code
Stars: ✭ 146 (-5.81%)
Pentest GuidePenetration tests guide based on OWASP including test cases, resources and examples.
Stars: ✭ 1,316 (+749.03%)
Msploitego Pentesting suite for Maltego based on data in a Metasploit database
Stars: ✭ 124 (-20%)
H4ckerThis repository is primarily maintained by Omar Santos and includes thousands of resources related to ethical hacking / penetration testing, digital forensics and incident response (DFIR), vulnerability research, exploit development, reverse engineering, and more.
Stars: ✭ 10,451 (+6642.58%)
NosqlmapAutomated NoSQL database enumeration and web application exploitation tool.
Stars: ✭ 1,928 (+1143.87%)
Eyes.shLet's you perform domain/IP information gathering... in BASH! Wasn't it esr who said "With enough eyeballs, all your IP info are belong to us?"
Stars: ✭ 89 (-42.58%)
M3m0M3m0 Tool ⚔️ Website Vulnerability Scanner & Auto Exploiter
Stars: ✭ 124 (-20%)
In Spectre MeltdownThis tool allows to check speculative execution side-channel attacks that affect many modern processors and operating systems designs. CVE-2017-5754 (Meltdown) and CVE-2017-5715 (Spectre) allows unprivileged processes to steal secrets from privileged processes. These attacks present 3 different ways of attacking data protection measures on CPUs enabling attackers to read data they shouldn't be able to. This tool is originally based on Microsoft: https://support.microsoft.com/en-us/help/4073119/protect-against-speculative-execution-side-channel-vulnerabilities-in
Stars: ✭ 86 (-44.52%)
Print My ShellPython script wrote to automate the process of generating various reverse shells.
Stars: ✭ 140 (-9.68%)
One Lin3rGives you one-liners that aids in penetration testing operations, privilege escalation and more
Stars: ✭ 1,259 (+712.26%)
Horn3tPowerful Visual Subdomain Enumeration at the Click of a Mouse
Stars: ✭ 120 (-22.58%)
Beef Over WanBrowser Exploitation Framework is a Open-source penetration testing tool that focuses on browser-based vulnerabilities .This Python Script does the changes Required to make hooked Linked Accessible Over WAN .So anyone can use this framework and Attack Over WAN without Port Forwarding [NGROK or any Localhost to Webhost Service Required ]
Stars: ✭ 82 (-47.1%)
Awesome VulnerableA curated list of VULNERABLE APPS and SYSTEMS which can be used as PENETRATION TESTING PRACTICE LAB.
Stars: ✭ 133 (-14.19%)
Scilla🏴☠️ Information Gathering tool 🏴☠️ DNS / Subdomains / Ports / Directories enumeration
Stars: ✭ 116 (-25.16%)
PortiaPortia aims to automate a number of techniques commonly performed on internal network penetration tests after a low privileged account has been compromised. Portia performs privilege escalation as well as lateral movement automatically in the network
Stars: ✭ 154 (-0.65%)
DnsmorphDomain name permutation engine written in Go
Stars: ✭ 148 (-4.52%)
QuiverQuiver is the tool to manage all of your tools for bug bounty hunting and penetration testing.
Stars: ✭ 140 (-9.68%)
TrigmapA wrapper for Nmap to quickly run network scans
Stars: ✭ 132 (-14.84%)
Awesome HackingAwesome hacking is an awesome collection of hacking tools.
Stars: ✭ 1,802 (+1062.58%)