Stars
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
⚡ Automatically decrypt encryptions without knowing the key or cipher, decode encodings, and crack hashes ⚡
Impacket is a collection of Python classes for working with network protocols.
The Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes the technical processes for verifying the contr…
A repository of LIVE malwares for your own joy and pleasure. theZoo is a project created to make the possibility of malware analysis open and available to the public.
Scapy: the Python-based interactive packet manipulation program & library.
Exploit Development and Reverse Engineering with GDB Made Easy
📱 objection - runtime mobile exploration
open-source jailbreaking tool for many iOS devices
Rewrite of the popular wireless network auditor, "wifite"
Reverse engineering and pentesting for Android applications
Scanning APK file for URIs, endpoints & secrets.
The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.
A python script that finds endpoints in JavaScript files
Tool to look for several security related Android application vulnerabilities
oletools - python tools to analyze MS OLE2 files (Structured Storage, Compound File Binary Format) and MS Office documents, for malware analysis, forensics and debugging.
The OWASP MASVS (Mobile Application Security Verification Standard) is the industry standard for mobile app security.
Smuggler - An HTTP Request Smuggling / Desync testing tool written in Python 3
Binary instrumentation framework based on FRIDA
Quark Agent - Your AI-powered Android APK Analyst
A next generation version of enum4linux (a Windows/Samba enumeration tool) with additional features like JSON/YAML export. Aimed for security professionals and CTF players.