charsetinspect by hack-all-the-things

A script that inspects multi-byte character sets looking for characters with specific user-defined properties

updated at March 22, 2023, 1:45 a.m.

Python

3 +0

25 +0

7 +0

GitHub
slurp by hehnope

this can't keep happening

updated at Nov. 22, 2023, 4:02 a.m.

Unknown languages

1 +0

2 +0

0 +0

GitHub
pwngitmanager by allyshka

Git manager for pentesters

updated at Nov. 23, 2023, 1 p.m.

Python

6 +0

106 +0

22 +0

GitHub
ntlm_challenger by b17zr

Parse NTLM challenge messages over HTTP and SMB

updated at Jan. 4, 2024, 4:39 p.m.

Python

4 +0

141 +0

25 +0

GitHub
IPObfuscator by OsandaMalith

A simple tool to convert the IP to a DWORD IP

updated at Feb. 18, 2024, 2:17 p.m.

C

9 +0

134 +0

46 +0

GitHub
XSS.png by LucaBongiorni

A XSS mind map ;)

updated at Feb. 25, 2024, 5:55 p.m.

Unknown languages

5 +0

57 +0

143 +0

GitHub
VWGen by qazbnm456

Vulnerable Web applications Generator

updated at Feb. 26, 2024, 1:08 a.m.

Python

7 +0

84 +0

18 +0

GitHub
dns-rebind-toolkit by brannondorsey

A front-end JavaScript toolkit for creating DNS rebinding attacks.

updated at March 12, 2024, 1:06 p.m.

JavaScript

24 +0

482 +0

93 +0

GitHub
raven by 0x09AL

raven is a Linkedin information gathering tool that can be used by pentesters to gather information about an organization employees using Linkedin.

updated at March 14, 2024, 10:35 p.m.

Go

39 +0

769 +0

176 +0

GitHub
DVCS-Pillage by evilpacket

Pillage web accessible GIT, HG and BZR repositories

updated at March 15, 2024, 1:29 a.m.

Shell

16 +0

314 +0

63 +0

GitHub
JoomlaScan by drego85

A free software to find the components installed in Joomla CMS, built out of the ashes of Joomscan.

updated at March 18, 2024, 3:27 p.m.

Python

20 +0

198 +0

67 +0

GitHub
Webshell-Sniper by WangYihang

hammer Manage your website via terminal

updated at March 27, 2024, 6:21 a.m.

Python

21 +0

420 +0

123 +0

GitHub
mutual-tls-ssl by Hakky54

🔐 Tutorial of setting up Security for your API with one way authentication with TLS/SSL and mutual authentication for a java based web server and a client with both Spring Boot. Different clients are provided such as Apache HttpClient, OkHttp, Spring RestTemplate, Spring WebFlux WebClient Jetty and Netty, the old and the new JDK HttpClient, the old and the new Jersey Client, Google HttpClient, Unirest, Retrofit, Feign, Methanol, vertx, Scala client Finagle, Featherbed, Dispatch Reboot, AsyncHttpClient, Sttp, Akka, Requests Scala, Http4s Blaze, Kotlin client Fuel, http4k, Kohttp and ktor. Also other server examples are available such as jersey with grizzly. Also gRPC, WebSocket and ElasticSearch examples are included

updated at April 2, 2024, 5:40 p.m.

Java

19 +0

540 +0

120 +0

GitHub
BadLibrary by SecureSkyTechnology

vulnerable web application for training

updated at April 4, 2024, 8:38 a.m.

JavaScript

20 +0

57 +0

7 +0

GitHub
malware-jail by HynekPetrak

Sandbox for semi-automatic Javascript malware analysis, deobfuscation and payload extraction. Written for Node.js

updated at April 5, 2024, 2:38 p.m.

JavaScript

46 +0

453 +0

99 +1

GitHub
Reverse-Shell-Manager by WangYihang

hammer A multiple reverse shell session/client manager via terminal

updated at April 8, 2024, 9:04 a.m.

Python

8 +0

234 +0

66 +0

GitHub
nano by UltimateHackers

Nano is a family of PHP web shells which are code golfed for stealth.

updated at April 9, 2024, 6:23 a.m.

PHP

32 +0

428 +0

95 +1

GitHub
iaito by hteso

This project has been moved to:

updated at April 10, 2024, 8:57 p.m.

C++

82 +0

1,470 +0

131 +0

GitHub
GSDF by We5ter

A domain searcher named GoogleSSLdomainFinder - 基于谷歌SSL透明证书的子域名查询工具

updated at April 11, 2024, 7 a.m.

Python

7 +0

174 +0

57 +0

GitHub
repo-supervisor by auth0

Scan your code for security misconfiguration, search for passwords and secrets. mag

updated at April 13, 2024, 7:20 a.m.

JavaScript

33 +1

634 +0

101 +0

GitHub