Maryam - Open-source intelligence (OSINT) Framework
Maryam is a full-featured open-source intelligence(OSINT) framework written in Python. Complete with independent modules, built in functions, interactive help, and command completion, provides a...
View ArticleZeek - A Powerful Network Analysis Framework That Is Much Different From The...
A powerful framework for network traffic analysis and security monitoring.Key Features— Documentation— Getting Started— Development— LicenseFollow us on Twitter at @zeekurity.Key FeaturesIn-depth...
View ArticleIspy - Eternalblue (MS17-010) / Bluekeep (CVE-2019-0708) Scanner And Exploit
ispy : Eternalblue(ms17-010)/Bluekeep(CVE-2019-0708) Scanner and exploiter ( Metasploitautomation )How to install :git clone https://github.com/Cyb0r9/ispy.gitcd ispychmod +x...
View ArticleMalConfScan - Volatility Plugin For Extracts Configuration Data Of Known Malware
MalConfScan is a Volatility plugin extracts configuration data of known malware. Volatility is an open-source memory forensics framework for incident response and malware analysis. This tool searches...
View ArticleMosca - Manual Search Tool To Find Bugs Like A Grep Unix Command
MoscaManual analysis tool to find bugs like a grepunix command, Version 0.05because is not dynamic... uses static code to search... don't confuse with academic views hahaha don't have graph here or...
View ArticleDECAF - Short for Dynamic Executable Code Analysis Framework
DECAF++, the new version of DECAF, taint analysis is around 2X faster making it the fastest, to the best of our knowledge, whole-system dynamic taint analysis framework. This results in a much better...
View ArticleTraxss - Automated XSS Vulnerability Scanner
Automated Vulnerability Scanner for XSS | Written in Python3 | Utilizes Selenium HeadlessTraxss is an automated framework to scan URLs and webpages for XSS Vulnerabilities. It includes over 575...
View ArticleFsmon - Monitor Filesystem On iOS / OS X / Android / FirefoxOS / Linux
FileSystem Monitor utility that runs on Linux, Android, iOS and OSX.Brought to you by Sergi Àlvarez at Nowsecure and distributed under the MIT license.Contact: pancake@nowsecure.comUsageThe tool...
View ArticleTylium - Primary Data Pipelines For Intrusion Detection, Security Analytics...
These files contain configuration for producing EDR (endpoint detection and response) data in addition to standard system logs. These configurations enable the production of these data streams using...
View ArticleSMTPTester - Tool To Check Common Vulnerabilities In SMTP Servers
SMTPTester is a python3 tool to test SMTP server for 3 common vulnerabilities:Spoofing - The ability to send a mail on behalf of an internal userRelay - Using this SMTP server to send email to other...
View ArticleuniFuzzer - A Fuzzing Tool For Closed-Source Binaries Based On Unicorn And...
uniFuzzer is a fuzzing tool for closed-source binaries based on Unicorn and LibFuzzer. Currently it supports fuzzing 32-bits LSB ELF files on ARM/MIPS, which are usually seen in IoT...
View ArticleUnicorn-Bios - Basic BIOS Emulator For Unicorn Engine
Basic BIOS emulator/debugger for Unicorn Engine.Written to debug the XEOS Operating System boot sequence.Usage:Usage: unicorn-bios [OPTIONS] BOOT_IMGOptions: --help / -h: Displays help. --memory / -m:...
View ArticlePostenum - A Clean, Nice And Easy Tool For Basic/Advanced Privilege...
Postenum is a clean, nice and easy tool for basic/advanced privilege escalation vectors/techniques. Postenum tool is intended to be executed locally on a Linux box.Be more than a normal user. be the...
View ArticleEaphammer v1.9.0 - Targeted Evil Twin Attacks Against WPA2-Enterprise Networks
by Gabriel Ryan (s0lst1c3)(gryan[at]specterops.io)EAPHammer is a toolkit for performing targeted evil twin attacks against WPA2-Enterprise networks. It is designed to be used in full scope wireless...
View ArticleRITA - Real Intelligence Threat Analytics
RITA is an open source framework for network traffic analysis.The framework ingests Bro/Zeek Logs in TSV format, and currently supports the following major features:Beaconing Detection: Search for...
View ArticleGobuster v3.0 - Directory/File, DNS And VHost Busting Tool Written In Go
Gobuster is a tool used to brute-force:URIs (directories and files) in web sites.DNS subdomains (with wildcard support).Virtual Host names on target web servers.Oh dear God.. WHY!?Because I wanted:......
View ArticleAuto Re - IDA PRO Auto-Renaming Plugin With Tagging Support
IDA PRO Auto-Renaming Plugin With Tagging SupportFeatures1. Auto-renaming dummy-named functions, which have one API call or jump to the imported APIBeforeAfter2. Assigning TAGS to functions accordingly...
View ArticleCotopaxi - Set Of Tools For Security Testing Of Internet Of Things Devices...
Set of tools for security testing of Internet of Things devices using protocols like: CoAP, DTLS, HTCPCP, mDNS, MQTT, SSDP.Installation:Simply clone code from git:...
View ArticleDirstalk - Modern Alternative To Dirbuster/Dirb
Dirstalk is a multi threaded application designed to brute force paths on web servers.The tool contains functionalities similar to the ones offered by dirbuster and dirb.Here you can see it in...
View ArticleXMLRPC Bruteforcer - An XMLRPC Brute Forcer Targeting Wordpress
An XMLRPC brute forcer targeting Wordpress written in Python 3. In the context of xmlrpc brute forcing, its faster than Hydra and WpScan. It can brute force 1000 passwords per second.Usagepython3...
View Article