Pacbot - Platform For Continuous Compliance Monitoring, Compliance Reporting...
Policy as Code Bot (PacBot) is a platform for continuous compliance monitoring, compliance reporting and security automation for the cloud. In PacBot, security and compliance policies are implemented...
View ArticleHorn3t - Powerful Visual Subdomain Enumeration At The Click Of A Mouse
Horn3t is your Nr #1 tool for exploring subdomains visually.Building on the great Sublist3r framework (or extensible with your favorite one) it searches for subdomains and generates awesome picture...
View ArticleWAFW00F v1.0.0 - Detect All The Web Application Firewall!
WAFW00F identifies and fingerprints Web Application Firewall (WAF) products.How does it work?To do its magic, WAFW00F does the following:Sends a normal HTTP request and analyses the response; this...
View ArticleMachinae v1.4.8 - Security Intelligence Collector
Machinae is a tool for collecting intelligence from public sites/feeds about various security-related pieces of data: IP addresses, domain names, URLs, email addresses, file hashes, and SSL...
View ArticleTrigmap - A Wrapper For Nmap To Automate The Pentest
Trigmap is a wrapper for Nmap. You can use it to easily start Nmap scan and especially to collect informations into a well organized directory hierarchy. The use of Nmap makes the script portable (easy...
View ArticleJWT Tool - A Toolkit For Testing, Tweaking And Cracking JSON Web Tokens
jwt_tool.py is a toolkit for validating, forging and cracking JWTs (JSON Web Tokens).Its functionality includes:Checking the validity of a tokenTesting for the RS/HS256 public key mismatch...
View ArticleSecurityRAT - Tool For Handling Security Requirements In Development
OWASP Security RAT (Requirement Automation Tool) is a tool supposed to assist with the problem of addressing security requirements during application development. The typical use case is:specify...
View ArticleMiteru - An Experimental Phishing Kit Detection Tool
Miteru is an experimental phishing kit detection tool.How it worksIt collects phishy URLs from the following feeds: CertStream-Suspicious feed via urlscan.ioOpenPhish feed via urlscan.ioPhishTank feed...
View ArticleProject iKy - Tool That Collects Information From An Email And Shows Results...
Project iKy is a tool that collects information from an email and shows results in a nice visual interface.Visit the Gitlab Page of the ProjectProjectFirst of all we want to advice you that we have...
View ArticleAcunetix Vulnerability Scanner Now With Network Security Scans
User-friendly and competitively priced, Acunetix leads the market in automatic web security testing technology. Its industry-leading crawler fully supports HTML5, JavaScript, and AJAX-heavy websites,...
View ArticleBrutemap - Tool That Automates Testing Accounts To The Site's Login Page
Brutemap is an open source penetration testing tool that automates testing accounts to the site's login page, based on Dictionary Attack. With this, you no longer need to search for other bruteforce...
View ArticleBandit - Tool Designed To Find Common Security Issues In Python Code
Bandit is a tool designed to find common security issues in Python code. To do this Bandit processes each file, builds an AST from it, and runs appropriate plugins against the AST nodes. Once Bandit...
View ArticleOSIF - Open Source Information Facebook
OSIF is an accurate facebook account information gathering, all sensitive information can be easily gathered even though the target converts all of its privacy to (only me), Sensitive information about...
View ArticleScavenger - Crawler Searching For Credential Leaks On Different Paste Sites
Just the code of my OSINT bot searching for sensitive data leaks on different paste sites.Search terms:credentialsprivate RSA keysWordpress configuration filesMySQL connect stringsonion linkslinks to...
View ArticleFlashsploit - Exploitation Framework For ATtiny85 Based HID Attacks
Flashsploit is an Exploitation Framework for Attacks using ATtiny85 HID Devices such as Digispark USB Development Board, flashsploit generates Arduino IDE Compatible (.ino) Scripts based on User Input...
View ArticleHydra 9.0 - Fast and Flexible Network Login Hacker
Number one of the biggest security holes are passwords, as every password security study shows. This tool is a proof of concept code, to give researchers and security consultants the possibility to...
View ArticleXSSCon - Simple XSS Scanner Tool
Powerfull Simple XSSScanner made with python 3.7InstallingRequirements: BeautifulSoup4 pip install bs4 requests pip install requests python 3.7 Commands: git clone...
View ArticleVersionscan - A PHP Version Scanner For Reporting Possible Vulnerabilities
Versionscan is a tool for evaluating your currently installed PHP version and checking it against known CVEs and the versions they were fixed in to report back potential issues.PLEASE NOTE: Work is...
View ArticleKali Linux 2019.2 Release - Penetration Testing and Ethical Hacking Linux...
This release brings the kernel up to version 4.19.28, fixes numerous bugs, includes many updated packages, and most excitingly, features a new release of Kali Linux NetHunter!Kali NetHunter 2019.2...
View ArticleGraffiti - A Tool To Generate Obfuscated One Liners To Aid In Penetration...
NOTE: Never upload payloads to online checkersGraffiti is a tool to generate obfuscated oneliners to aid in penetration testing situations. Graffiti accepts the following languages for...
View Article