Stars
Covenant is a collaborative .NET C2 framework for red teamers.
A list of Free Software network services and web applications which can be hosted on your own servers
Streisand sets up a new server running your choice of WireGuard, OpenConnect, OpenSSH, OpenVPN, Shadowsocks, sslh, Stunnel, or a Tor bridge. It also generates custom instructions for all of these s…
Oil Pumpjack: open source materials to create your own oil pumpjack managed by an Arduino
Tools, tips, tricks, and more for exploring ICS Security.
A curated list of resources related to Industrial Control System (ICS) security.
Linux enumeration tool for pentesting and CTFs with verbosity levels
Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata alerts.
A Nmap XSL implementation with Bootstrap.
Complete Mandiant Offensive VM (Commando VM), a fully customizable Windows-based pentesting virtual machine distribution. [email protected]
OSINT tool to find breached emails, databases, pastes, and relevant information
CLI tool for open source and threat intelligence
Leverages publicly available datasets from Google BigQuery to generate content discovery and subdomain wordlists
"Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.
Database of websites for penetration testing
Automated network asset, email, and social media profile discovery and cataloguing.
Red Teaming & Pentesting checklists for various engagements
BackupMinder is tool to create a monthly archive of otherwise unmanageable backups
Small and highly portable detection tests based on MITRE's ATT&CK.
Use unicornscan to quickly scan all open ports, and then pass the open ports to nmap for detailed scans.
RedSnarf is a pen-testing / red-teaming tool for Windows environments
Machinae Security Intelligence Collector
CimSweep is a suite of CIM/WMI-based tools that enable the ability to perform incident response and hunting operations remotely across all versions of Windows.
Test Blue Team detections without running any attack.