Astra by flipkart-incubator

Automated Security Testing For REST API's

updated at Nov. 16, 2024, 1:22 p.m.

Python

86 +0

2,512 +6

402 +1

GitHub
subDomainsBrute by lijiejie

A fast sub domain brute tool for pentesters

updated at Nov. 16, 2024, 12:06 p.m.

Python

116 +0

3,488 +2

1,010 +0

GitHub
beef by beefproject

The Browser Exploitation Framework Project

updated at Nov. 16, 2024, 11:59 a.m.

JavaScript

444 -1

9,856 +18

2,180 +1

GitHub
gitrob by michenriksen

Reconnaissance tool for GitHub organizations

updated at Nov. 16, 2024, 11:29 a.m.

Go

154 +0

5,938 +3

832 +6

GitHub
snallygaster by hannob

Tool to scan for secret files on HTTP servers

updated at Nov. 16, 2024, 10:48 a.m.

Python

74 +0

2,076 +2

228 +0

GitHub
Infosec_Reference by rmusser01

An Information Security Reference That Doesn't Suck; https://rmusser.net/git/admin-2/Infosec_Reference for non-MS Git hosted version.

updated at Nov. 16, 2024, 6:49 a.m.

CSS

265 +0

5,584 +5

1,191 +3

GitHub
xxe-injection-payload-list by payloadbox

🎯 XML External Entity (XXE) Injection Payload List

updated at Nov. 16, 2024, 5:17 a.m.

Unknown languages

23 +0

1,096 +5

299 +1

GitHub
mutual-tls-ssl by Hakky54

🔐 Tutorial of setting up Security for your API with one way authentication with TLS/SSL and mutual authentication for a java based web server and a client with both Spring Boot. Different clients are provided such as Apache HttpClient, OkHttp, Spring RestTemplate, Spring WebFlux WebClient Jetty and Netty, the old and the new JDK HttpClient, the old and the new Jersey Client, Google HttpClient, Unirest, Retrofit, Feign, Methanol, vertx, Scala client Finagle, Featherbed, Dispatch Reboot, AsyncHttpClient, Sttp, Akka, Requests Scala, Http4s Blaze, Kotlin client Fuel, http4k, Kohttp and ktor. Also other server examples are available such as jersey with grizzly. Also gRPC, WebSocket and ElasticSearch examples are included

updated at Nov. 16, 2024, 1:18 a.m.

Java

19 +0

571 +5

121 +0

GitHub
TIDoS-Framework by theInfectedDrake

The Offensive Manual Web Application Penetration Testing Framework.

updated at Nov. 16, 2024, 12:12 a.m.

Python

124 +0

1,781 +2

392 +1

GitHub
acra by cossacklabs

Database security suite. Database proxy with field-level encryption, search through encrypted data, SQL injections prevention, intrusion detection, honeypots. Supports client-side and proxy-side ("transparent") encryption. SQL, NoSQL.

updated at Nov. 15, 2024, 9:12 p.m.

Go

42 +0

1,357 +2

128 +0

GitHub
FOCA by ElevenPaths

Tool to find metadata and hidden information in the documents.

updated at Nov. 15, 2024, 8:56 p.m.

C#

143 +0

2,979 +9

552 +1

GitHub
raven by 0x09AL

raven is a Linkedin information gathering tool that can be used by pentesters to gather information about an organization employees using Linkedin.

updated at Nov. 15, 2024, 8:41 p.m.

Go

39 +0

778 +1

163 +0

GitHub
EQGRP by x0rz

Decrypted content of eqgrp-auction-file.tar.xz

updated at Nov. 15, 2024, 7:19 p.m.

Perl

397 +0

4,099 +1

2,070 -3

GitHub
cloudgoat by RhinoSecurityLabs

CloudGoat is Rhino Security Labs' "Vulnerable by Design" AWS deployment tool

updated at Nov. 15, 2024, 5:45 p.m.

Python

74 +0

2,974 +3

622 +3

GitHub
phpsploit by nil0x42

Full-featured C2 framework which silently persists on webserver with a single-line PHP backdoor

updated at Nov. 15, 2024, 2:39 p.m.

Python

104 +0

2,221 +8

440 +1

GitHub
dvcs-ripper by kost

Rip web accessible (distributed) version control systems: SVN/GIT/HG...

updated at Nov. 15, 2024, 11:50 a.m.

Perl

51 +0

1,706 +4

313 +0

GitHub
JShell by UltimateHackers

JShell - Get a JavaScript shell with XSS.

updated at Nov. 15, 2024, 7:57 a.m.

Python

24 +0

511 +2

137 +0

GitHub
js-vuln-db by tunz

A collection of JavaScript engine CVEs with PoCs

updated at Nov. 14, 2024, 9:33 p.m.

Unknown languages

185 +0

2,291 +2

405 +0

GitHub
notes by ChALkeR

Some public notes

updated at Nov. 14, 2024, 9:16 p.m.

Unknown languages

92 +0

1,268 +1

77 +0

GitHub
LinkFinder by GerbenJavado

A python script that finds endpoints in JavaScript files

updated at Nov. 14, 2024, 3:15 p.m.

Python

66 +0

3,723 +6

597 +0

GitHub