PwnXSS - Vulnerability XSS Scanner Exploit
A powerful XSS scanner made in python 3.7InstallingRequirements: BeautifulSoup4 pip install bs4 requests pip install requests python 3.7 Commands: git clone https://github.com/pwn0sec/PwnXSSchmod 755...
View ArticleGo-Dork - The Fastest Dork Scanner Written In Go
The fastest dork scanner written in Go.There are also various search engines supported by go-dork, including Google, Shodan, Bing, Duck, Yahoo and Ask.InstallDownload a prebuilt binary from releases...
View ArticleVelociraptor - Endpoint Visibility and Collection Tool
Velociraptor is a tool for collecting host based state information using Velocidex Query Language (VQL) queries.To learn more about Velociraptor, read the documentation...
View ArticleSharpSecDump - .Net Port Of The Remote SAM + LSA Secrets Dumping...
.Net port of the remote SAM + LSA Secrets dumping functionality of impacket's secretsdump.py. By default runs in the context of the current user. Please only use in environments you own or have...
View ArticleWacker - A WPA3 Dictionary Cracker
A set of scripts to help perform an online dictionary attack against a WPA3 access point. Wacker leverages the wpa_supplicant control interface to control the operations of the supplicant daemon and to...
View ArticlePwnedPasswordsChecker - Search (Offline) If Your Password (NTLM Or SHA1...
PwnedPasswordsChecker is a tool that checks if the hash of a known password (in SHA1 or NTLM format) is present in the list of I Have Been Pwned leaks and the number of occurrences.You can download the...
View ArticleCooolis-ms - A Server That Supports The Metasploit Framework RPC
Cooolis-ms is a server that supports Metasploit Framework RPC. It is used to work for Shellcode and PE loader, bypassing the static detection of anti-virus software to a certain extent, and allows the...
View ArticleNERVE - Network Exploitation, Reconnaissance & Vulnerability Engine
NERVE is a vulnerability scanner tailored to find low-hanging fruit level vulnerabilities, in specific application configurations, network services, and unpatched services.It is not a replacement for...
View ArticlePolypyus - Learns To Locate Functions In Raw Binaries By Extracting Known...
Polypyus learns to locate functions in raw binaries by extracting known functions from similar binaries. Thus, it is a firmware historian. Polypyus works without disassembling these binaries, which is...
View ArticleLil-Pwny - Auditing Active Directory Passwords Using Multiprocessing In Python
A multiprocessing approach to auditing Active Directorypasswords using Python.About Lil PwnyLil Pwny is a Python application to perform an offline audit of NTLM hashes of users' passwords, recovered...
View ArticlemapCIDR - Small Utility Program To Perform Multiple Operations For A Given...
Small utility program to perform multiple operations for a given subnet/CIDR ranges.The tool was developed to ease load distribution for mass scanning operations, it can be used both as a library and...
View ArticleH2Csmuggler - HTTP Request Smuggling Over HTTP/2 Cleartext (H2C)
h2cSmuggler smuggles HTTP traffic past insecure edge-server proxy_pass configurations by establishing HTTP/2 cleartext (h2c) communications with h2c-compatible back-end servers, allowing a bypass of...
View ArticlePastego - Scrape/Parse Pastebin Using GO And Expression Grammar (PEG)
Scrape/Parse Pastebin using GO and grammar expression (PEG).Installation$ go get -u github.com/notdodo/pastegoUsageSearch keywords are case sensitivepastego -s "password,keygen,PASSWORD"You can use...
View ArticlePowerglot - Encodes Offensive Powershell Scripts Using Polyglots
Powerglot encodes several kind of scripts using polyglots, for example, offensive powershell scripts. It is not needed a loader to run the payload. In red-team exercises or offensive tasks, masking of...
View ArticlesmbAutoRelay - Provides The Automation Of SMB/NTLM Relay Technique For...
SMB AutoRelay provides the automation of SMB/NTLM Relay technique for pentesting and red teaming exercises in active directory environments. Usage Syntax: ./smbAutoRelay.sh -i <interface> -t...
View ArticleuriDeep - Unicode Encoding Attacks With Machine Learning
Unicode encoding attacks with machine learning. Tool based on machine learning to create amazing fake domains using confusables. Some domains can deceive IDN policies (Chrome & Firefox).I created...
View ArticleAsnap - Tool To Render Recon Phase Easier By Providing Updated Data About...
Asnap aims to render recon phase easier by providing regularly updated data about which companies owns which ipv4 or ipv6 addresses and allows the user to automate initial port and service...
View ArticleTimewarrior - Commandline Time Reporting
Timewarrior is a time tracking utility that offers simple stopwatch features as well as sophisticated calendar-based backfill, along with flexible reporting. It is a portable, well supported and very...
View ArticleAdvPhishing - This Is Advance Phishing Tool! OTP PHISHING
This Is Advance Phishing Tool! OTP PHISHINGSPECIAL OTP BYPASS VIDEO WORKEDSocial Media HackLinkInstallation Termuxhttps://www.youtube.com/watch?v=LO3hX1lLBjIWhatsapp...
View ArticleOFFPORT_KILLER - This Tool Aims At Automating The Identification Of Potential...
#Manual Port Scanning #Enumerate Potential ServiceIf you like the tool and for my personal motivation so as to develop other tools please a +1 star *INTROThis tool aims at automating the identification...
View Article