Stars
Magnificent app which corrects your previous console command.
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
An interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers.
Automatic SQL injection and database takeover tool
Best DDoS Attack Script Python3, (Cyber / DDos) Attack With 56 Methods
Transparent proxy server that works as a poor man's VPN. Forwards over ssh. Doesn't require admin. Works with Linux and MacOS. Supports DNS tunneling.
E-mails, subdomains and names Harvester - OSINT
🛡️ Open-source and next-generation Web Application Firewall (WAF)
The modern API client that lives in your terminal.
AutoRecon is a multi-threaded network reconnaissance tool which performs automated enumeration of services.
The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.
Tool for Active Directory Certificate Services enumeration and abuse
Malware Configuration And Payload Extraction
A tool to dump a git repository from a website
BloodyAD is an Active Directory Privilege Escalation Framework
Python script to enumerate users, groups and computers from a Windows domain through LDAP queries
An AI-powered threat modeling tool that leverages OpenAI's GPT models to generate threat models for a given application based on the STRIDE methodology.
Enumeration/exploit/analysis/download/etc pentesting framework for GCP; modeled like Pacu for AWS; a product of numerous hours via @WebbinRoot
A powerful scanner to scan your Filesystem, S3, MySQL, Redis, Google Cloud Storage and Firebase storage for PII and sensitive data.
Macaron is an extensible supply-chain security analysis framework from Oracle Labs that supports a wide range of build systems and CI/CD services. It can be used to prevent supply chain attacks, de…
This tool is for letting you know how strong your disable_functions is and how you can bypass that.
Malicious Macro Generator for LibreOffice/OpenOffice