Quantcast
Channel: KitPloit - PenTest Tools!
Browsing all 5816 articles
Browse latest View live
↧

Image may be NSFW.
Clik here to view.

PwnXSS - Vulnerability XSS Scanner Exploit

A powerful XSS scanner made in python 3.7InstallingRequirements: BeautifulSoup4 pip install bs4 requests pip install requests python 3.7 Commands: git clone https://github.com/pwn0sec/PwnXSSchmod 755...

View Article


Image may be NSFW.
Clik here to view.

Go-Dork - The Fastest Dork Scanner Written In Go

The fastest dork scanner written in Go.There are also various search engines supported by go-dork, including Google, Shodan, Bing, Duck, Yahoo and Ask.InstallDownload a prebuilt binary from releases...

View Article


Image may be NSFW.
Clik here to view.

Velociraptor - Endpoint Visibility and Collection Tool

Velociraptor is a tool for collecting host based state information using Velocidex Query Language (VQL) queries.To learn more about Velociraptor, read the documentation...

View Article

Image may be NSFW.
Clik here to view.

SharpSecDump - .Net Port Of The Remote SAM + LSA Secrets Dumping...

.Net port of the remote SAM + LSA Secrets dumping functionality of impacket's secretsdump.py. By default runs in the context of the current user. Please only use in environments you own or have...

View Article

Image may be NSFW.
Clik here to view.

Wacker - A WPA3 Dictionary Cracker

A set of scripts to help perform an online dictionary attack against a WPA3 access point. Wacker leverages the wpa_supplicant control interface to control the operations of the supplicant daemon and to...

View Article


Image may be NSFW.
Clik here to view.

PwnedPasswordsChecker - Search (Offline) If Your Password (NTLM Or SHA1...

PwnedPasswordsChecker is a tool that checks if the hash of a known password (in SHA1 or NTLM format) is present in the list of I Have Been Pwned leaks and the number of occurrences.You can download the...

View Article

Image may be NSFW.
Clik here to view.

Cooolis-ms - A Server That Supports The Metasploit Framework RPC

Cooolis-ms is a server that supports Metasploit Framework RPC. It is used to work for Shellcode and PE loader, bypassing the static detection of anti-virus software to a certain extent, and allows the...

View Article

Image may be NSFW.
Clik here to view.

NERVE - Network Exploitation, Reconnaissance & Vulnerability Engine

NERVE is a vulnerability scanner tailored to find low-hanging fruit level vulnerabilities, in specific application configurations, network services, and unpatched services.It is not a replacement for...

View Article


Image may be NSFW.
Clik here to view.

Polypyus - Learns To Locate Functions In Raw Binaries By Extracting Known...

Polypyus learns to locate functions in raw binaries by extracting known functions from similar binaries. Thus, it is a firmware historian. Polypyus works without disassembling these binaries, which is...

View Article


Image may be NSFW.
Clik here to view.

Lil-Pwny - Auditing Active Directory Passwords Using Multiprocessing In Python

A multiprocessing approach to auditing Active Directorypasswords using Python.About Lil PwnyLil Pwny is a Python application to perform an offline audit of NTLM hashes of users' passwords, recovered...

View Article

Image may be NSFW.
Clik here to view.

mapCIDR - Small Utility Program To Perform Multiple Operations For A Given...

Small utility program to perform multiple operations for a given subnet/CIDR ranges.The tool was developed to ease load distribution for mass scanning operations, it can be used both as a library and...

View Article

Image may be NSFW.
Clik here to view.

H2Csmuggler - HTTP Request Smuggling Over HTTP/2 Cleartext (H2C)

h2cSmuggler smuggles HTTP traffic past insecure edge-server proxy_pass configurations by establishing HTTP/2 cleartext (h2c) communications with h2c-compatible back-end servers, allowing a bypass of...

View Article

Image may be NSFW.
Clik here to view.

Pastego - Scrape/Parse Pastebin Using GO And Expression Grammar (PEG)

Scrape/Parse Pastebin using GO and grammar expression (PEG).Installation$ go get -u github.com/notdodo/pastegoUsageSearch keywords are case sensitivepastego -s "password,keygen,PASSWORD"You can use...

View Article


Image may be NSFW.
Clik here to view.

Powerglot - Encodes Offensive Powershell Scripts Using Polyglots

Powerglot encodes several kind of scripts using polyglots, for example, offensive powershell scripts. It is not needed a loader to run the payload. In red-team exercises or offensive tasks, masking of...

View Article

Image may be NSFW.
Clik here to view.

smbAutoRelay - Provides The Automation Of SMB/NTLM Relay Technique For...

SMB AutoRelay provides the automation of SMB/NTLM Relay technique for pentesting and red teaming exercises in active directory environments. Usage Syntax: ./smbAutoRelay.sh -i <interface> -t...

View Article


Image may be NSFW.
Clik here to view.

uriDeep - Unicode Encoding Attacks With Machine Learning

Unicode encoding attacks with machine learning. Tool based on machine learning to create amazing fake domains using confusables. Some domains can deceive IDN policies (Chrome & Firefox).I created...

View Article

Image may be NSFW.
Clik here to view.

Asnap - Tool To Render Recon Phase Easier By Providing Updated Data About...

Asnap aims to render recon phase easier by providing regularly updated data about which companies owns which ipv4 or ipv6 addresses and allows the user to automate initial port and service...

View Article


Image may be NSFW.
Clik here to view.

Timewarrior - Commandline Time Reporting

Timewarrior is a time tracking utility that offers simple stopwatch features as well as sophisticated calendar-based backfill, along with flexible reporting. It is a portable, well supported and very...

View Article

Image may be NSFW.
Clik here to view.

AdvPhishing - This Is Advance Phishing Tool! OTP PHISHING

This Is Advance Phishing Tool! OTP PHISHINGSPECIAL OTP BYPASS VIDEO WORKEDSocial Media HackLinkInstallation Termuxhttps://www.youtube.com/watch?v=LO3hX1lLBjIWhatsapp...

View Article

Image may be NSFW.
Clik here to view.

OFFPORT_KILLER - This Tool Aims At Automating The Identification Of Potential...

#Manual Port Scanning #Enumerate Potential ServiceIf you like the tool and for my personal motivation so as to develop other tools please a +1 star *INTROThis tool aims at automating the identification...

View Article
Browsing all 5816 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>