DirsearchWeb path scanner
Stars: ✭ 7,246 (+2906.64%)
FfufFast web fuzzer written in Go
Stars: ✭ 5,687 (+2259.75%)
Gray hat csharp codeThis repository contains full code examples from the book Gray Hat C#
Stars: ✭ 301 (+24.9%)
FuzzdictsWeb Pentesting Fuzz 字典,一个就够了。
Stars: ✭ 4,013 (+1565.15%)
AnsvifA Not So Very Intelligent Fuzzer: An advanced fuzzing framework designed to find vulnerabilities in C/C++ code.
Stars: ✭ 107 (-55.6%)
Doxboxweb-based OSINT and reconaissance toolkit
Stars: ✭ 202 (-16.18%)
UrlhubURL shortener web application based on the Laravel PHP Framework.
Stars: ✭ 217 (-9.96%)
Hyperlink🔗 Immutable, Pythonic, correct URLs.
Stars: ✭ 198 (-17.84%)
React Url QueryA library for managing state through query parameters in the URL in React
Stars: ✭ 195 (-19.09%)
DrozerThe Leading Security Assessment Framework for Android.
Stars: ✭ 2,683 (+1013.28%)
Dns PersistDNS-Persist is a post-exploitation agent which uses DNS for command and control.
Stars: ✭ 191 (-20.75%)
AaiaAWS Identity and Access Management Visualizer and Anomaly Finder
Stars: ✭ 218 (-9.54%)
Ntcall64Windows NT x64 syscall fuzzer
Stars: ✭ 201 (-16.6%)
FilesensorDynamic file detection tool based on crawler 基于爬虫的动态敏感文件探测工具
Stars: ✭ 227 (-5.81%)
BetterbackdoorA backdoor with a multitude of features.
Stars: ✭ 195 (-19.09%)
Oscp Cheat SheetThis is my OSCP cheat sheet made by combining a lot of different resources online with a little bit of tweaking. I used this cheat sheet during my exam (Fri, 13 Sep 2019) and during the labs. I can proudly say it helped me pass so I hope it can help you as well ! Good Luck and Try Harder
Stars: ✭ 216 (-10.37%)
Javafuzzcoverage guided fuzz testing for java
Stars: ✭ 193 (-19.92%)
CommixAutomated All-in-One OS Command Injection Exploitation Tool.
Stars: ✭ 3,016 (+1151.45%)
GetjsA tool to fastly get all javascript sources/files
Stars: ✭ 190 (-21.16%)
Gramfuzzgramfuzz is a grammar-based fuzzer that lets one define complex grammars to generate text and binary data formats.
Stars: ✭ 209 (-13.28%)
WebmapA Python tool used to automate the execution of the following tools : Nmap , Nikto and Dirsearch but also to automate the report generation during a Web Penetration Testing
Stars: ✭ 188 (-21.99%)
SharpfuzzAFL-based fuzz testing for .NET
Stars: ✭ 185 (-23.24%)
AndroticklerPenetration testing and auditing toolkit for Android apps.
Stars: ✭ 225 (-6.64%)
VerbOrganize and send HTTP requests from Emacs
Stars: ✭ 205 (-14.94%)
Awesome Shodan Queries🔍 A collection of interesting, funny, and depressing search queries to plug into shodan.io 👩💻
Stars: ✭ 2,758 (+1044.4%)
Evil SsdpSpoof SSDP replies and create fake UPnP devices to phish for credentials and NetNTLM challenge/response.
Stars: ✭ 204 (-15.35%)
Honggfuzz RsFuzz your Rust code with Google-developed Honggfuzz !
Stars: ✭ 222 (-7.88%)
WstgThe Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.
Stars: ✭ 3,873 (+1507.05%)
LeakscraperLeakScraper is an efficient set of tools to process and visualize huge text files containing credentials. Theses tools are designed to help penetration testers and redteamers doing OSINT by gathering credentials belonging to their target.
Stars: ✭ 227 (-5.81%)
HawkeyeHawkeye filesystem analysis tool
Stars: ✭ 202 (-16.18%)
Iot PtA Virtual environment for Pentesting IoT Devices
Stars: ✭ 218 (-9.54%)
FdsploitFile Inclusion & Directory Traversal fuzzing, enumeration & exploitation tool.
Stars: ✭ 199 (-17.43%)
Pguriuri type for PostgreSQL
Stars: ✭ 235 (-2.49%)
Vscode Remote WorkspaceMulti protocol support for handling remote files like local ones in Visual Studio Code.
Stars: ✭ 197 (-18.26%)
Darkspiritz🌔 Official Repository for DarkSpiritz Penetration Framework | Written in Python 🐍
Stars: ✭ 219 (-9.13%)
MosintAn automated e-mail OSINT tool
Stars: ✭ 184 (-23.65%)
CameradarCameradar hacks its way into RTSP videosurveillance cameras
Stars: ✭ 2,775 (+1051.45%)
HrshellHRShell is an HTTPS/HTTP reverse shell built with flask. It is an advanced C2 server with many features & capabilities.
Stars: ✭ 193 (-19.92%)
Capsulecorp PentestVagrant VirtualBox environment for conducting an internal network penetration test
Stars: ✭ 214 (-11.2%)
CintruderCaptcha Intruder (CIntrud3r) is an automatic pentesting tool to bypass captchas.
Stars: ✭ 192 (-20.33%)
ConnectorКоннектор: удобный HTTP-клиент для 1С:Предприятие 8
Stars: ✭ 240 (-0.41%)
Stegseek⚡️ Worlds fastest steghide cracker, chewing through millions of passwords per second ⚡️
Stars: ✭ 187 (-22.41%)
SharpattackA simple wrapper for C# tools
Stars: ✭ 211 (-12.45%)
Nanoid A tiny, secure, URL-friendly, unique string ID generator for Rust
Stars: ✭ 188 (-21.99%)
Scala UriSimple scala library for building and parsing URIs
Stars: ✭ 225 (-6.64%)
KnaryA simple HTTP(S) and DNS Canary bot with Slack/Discord/MS Teams & Pushover support
Stars: ✭ 187 (-22.41%)
UnbescapeAdvanced yet easy to use escaping library for Java
Stars: ✭ 207 (-14.11%)
SocialfishPhishing Tool & Information Collector
Stars: ✭ 2,522 (+946.47%)
FrackerPHP function tracker
Stars: ✭ 234 (-2.9%)
SlurpEvaluate the security of S3 buckets
Stars: ✭ 183 (-24.07%)
LnkupGenerates malicious LNK file payloads for data exfiltration
Stars: ✭ 205 (-14.94%)
CrithitTakes a single wordlist item and tests it one by one over a large collection of websites before moving onto the next. Create signatures to cross-check vulnerabilities over multiple hosts.
Stars: ✭ 182 (-24.48%)
Hack ToolsThe all-in-one Red Team extension for Web Pentester 🛠
Stars: ✭ 2,750 (+1041.08%)
RogueAn extensible toolkit providing penetration testers an easy-to-use platform to deploy Access Points during penetration testing and red team engagements.
Stars: ✭ 225 (-6.64%)
CodealchemistSemantics-aware Code Generation for Finding JS engine Vulnerabilities
Stars: ✭ 204 (-15.35%)
JwtcatA CPU-based JSON Web Token (JWT) cracker and - to some extent - scanner.
Stars: ✭ 181 (-24.9%)
DecryptteamviewerEnumerate and decrypt TeamViewer credentials from Windows registry
Stars: ✭ 205 (-14.94%)