Stars
byt3bl33d3r / Red-Baron
Forked from Coalfire-Research/Red-BaronAutomate creating resilient, disposable, secure and agile infrastructure for Red Teams
The Penetration Testers Framework (PTF) is a way for modular support for up-to-date tools.
Program for determining types of files for Windows, Linux and MacOS.
nahamsec / SecLists
Forked from danielmiessler/SecListsSecLists is the security tester's companion. It is a collection of multiple types of lists used during security assessments. List types include usernames, passwords, URLs, sensitive data grep strin…
A script to set up a quick Ubuntu 17.10 x64 box with tools I use.
This script is intended to automate your reconnaissance process in an organized fashion
A collection of awesome API Security tools and resources. The focus goes to open-source tools and resources that benefit all the community.
PowerSploit - A PowerShell Post-Exploitation Framework
Windows / Linux Local Privilege Escalation Workshop
The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application penetration testing topics.
A script that automates generation of OpenSSL reverse shells
Tool for shell commands execution, visualization and alerting. Configured with a simple YAML file.
Totally Automatic LFI Exploiter (+ Reverse Shell) and Scanner
File Inclusion & Directory Traversal fuzzing, enumeration & exploitation tool.
A repository with 3 tools for pwn'ing websites with .git repositories available
Multiprocessing(Parallel)Subdomain Detect Script
A friend of SQLmap which will do what you always expected from SQLmap.
JustTryHarder, a cheat sheet which will aid you through the PWK course & the OSCP Exam. (Inspired by PayloadAllTheThings)
CloudBunny is a tool to capture the real IP of the server that uses a WAF as a proxy or protection. In this tool we used three search engines to search domain information: Shodan, Censys and Zoomeye.
linuxprivchecker.py -- a Linux Privilege Escalation Check Script
SSLScrape | A scanning tool for scaping hostnames from SSL certificates.