5. Scavengerscavenger : is a multi-threaded post-exploitation scanning tool for scavenging systems, finding most frequently used files and folders as well as "interesting" files containing sensitive information.
6. CryptomgCryptOMG is a configurable CTF style test bed that highlights common flaws in cryptographic implementations.
8. Cribdragcribdrag - an interactive crib dragging tool for cryptanalysis on ciphertext generated with reused or predictable stream cipher keys
9. SqlolA configurable SQL injection test-bed
12. MsfrpcPerl/Python modules for interfacing with Metasploit MSGRPC
13. BurpnotesextensionBurp Notes Extension is a plugin for Burp Suite that adds a Notes tab. The tool aims to better organize external files that are created during penetration testing.
15. FireworkFirework is a proof of concept tool to interact with Microsoft Workplaces creating valid files required for the provisioning process.
16. AckackA program to monitor network traffic and detect unauthorized sessions.
19. PortiaPortia aims to automate a number of techniques commonly performed on internal network penetration tests after a low privileged account has been compromised.
20. ModsecurityModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and Nginx that is developed by Trustwave's SpiderLabs. It has a robust event-based programming language which provides protection from a range of attacks against web applications and allows for HTTP traffic monitoring, logging and real-time analys…
21. HosthunterHostHunter a recon tool for discovering hostnames using OSINT techniques.
22. McirThe Magical Code Injection Rainbow! MCIR is a framework for building configurable vulnerability testbeds. MCIR is also a collection of configurable vulnerability testbeds.
23. Dohc2DoHC2 allows the ExternalC2 library from Ryan Hanson (https://github.com/ryhanson/ExternalC2) to be leveraged for command and control (C2) via DNS over HTTPS (DoH).
24. ResponderResponder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv2/LMv2, Extended Security NTLMSSP and Basic HTTP authentication.
25. SharpcompileSharpCompile is an aggressor script for Cobalt Strike which allows you to compile and execute C# in realtime. This is a more slick approach than manually compiling an .NET assembly and loading it into Cobalt Strike. The project aims to make it easier to move away from adhoc PowerShell execution instead creating a temporary assembly and executing using beacon's 'execute-assembly' in seconds.
28. UPnP-request-generatorA tool to parse UPnP descriptor XML files and generate SOAP control requests for use with Burp Suite or netcat
29. batchyDNSA reconnaissance tool that can quickly discover hostnames from a list of IP addresses.
31. KoreLogic-RulesUpdated version of the 2010 KoreLogic password cracking rules for John the Ripper
32. modsec-sdbm-utilUtility to manipulate SDBM files used by ModSecurity. With that utility it is possible to _shrink_ SDBM databases. It is also possible to list the SDBM contents with filters such as: expired or invalid items only.
36. thicknetTCP session interception and injection framework
38. yara-rubyRuby bindings for the yara file analysis and classification library