Lists (1)
Sort Name ascending (A-Z)
Stars
A feature-rich command-line audio/video downloader
Automatic SQL injection and database takeover tool
The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.
Free and Open Source Enterprise Resource Planning (ERP)
Incredibly fast crawler designed for OSINT.
Fast subdomains enumeration tool for penetration testers
AutoRecon is a multi-threaded network reconnaissance tool which performs automated enumeration of services.
Automated All-in-One OS Command Injection Exploitation Tool.
"Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.
A curated list of bugbounty writeups (Bug type wise) , inspired from https://github.com/ngalongc/bug-bounty-reference
Top disclosed reports from HackerOne
Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management
A python script that finds endpoints in JavaScript files
Network recon framework. Build your own, self-hosted and fully-controlled alternatives to Shodan / ZoomEye / Censys and GreyNoise, run your Passive DNS service, build your taylor-made EASM tool, co…
Arsenal is just a quick inventory and launcher for hacking programs
File upload vulnerability scanner and exploitation tool.
A high performance offensive security tool for reconnaissance and vulnerability scanning
Totally Automatic LFI Exploiter (+ Reverse Shell) and Scanner
XSS spider - 66/66 wavsep XSS detected
A Python based web application scanner to gather OSINT and fuzz for OWASP vulnerabilities on a target website.
Popular Pentesting scanner in Python3.6 for SQLi/XSS/LFI/RFI and other Vulns
Sublert is a security and reconnaissance tool which leverages certificate transparency to automatically monitor new subdomains deployed by specific organizations and issued TLS/SSL certificate.
Nuclei Templates Collection
A simple tool for bypassing file upload restrictions.