OWASP Mantra Security Toolkit - Browser Based Security Framework
OWASP Mantra is a collection of free and open source tools integrated into a web browser, which can become handy for students, penetration testers, web application developers,security professionals...
View ArticleMoo0 File Monitor - Monitor file access easily
Moo0 File Monitor lets you easily monitor the file access activities on your system.Have you ever wondered what's going on with your disk system behind your watch? Why the disk is busy? What's...
View ArticleAntak WebShell - A webshell which utilizes PowerShell
Antak is a webshell written in C#.Net which utilizes powershell. Antak is a part of Nishang and updates could be found here: https://github.com/samratashok/nishangUse this shell as a normal powershell...
View ArticleNosql-Exploitation-Framework - A FrameWork For NoSQL Scanning and...
A FrameWork For NoSQL Scanning, Enumeration and Exploitation.NoSQL Databases are schema less databases. They were invented to store data easily and flexibly.NoSQL Databases have gained popularity and...
View ArticleXSSYA - Cross Site Scripting Scanner & Vulnerability Confirmation
XSSYA work by execute the payload encoded to bypass Web Application Firewall which is the first method request and response if it respond 200 it turn to Method 2 which search that payload decoded in...
View ArticleDarunGrim - A Patch Analysis and Binary Diffing Tool
DarunGrim is a binary diffing tool. DarunGrim is a free diffing tool which provides binary diffing functionality.Binary diffing is a powerful technique to reverse-engineer patches released by software...
View ArticlePAExec - The Redistributable PsExec (Launch Remote Windows Apps)
PAExec lets you launch Windows programs on remote Windows computers without needing to install software on the remote computer first. For example, you could launch CMD.EXE remotely and have the...
View ArticleShellter - A Dynamic ShellCode Injector
Shellter is a dynamic shellcode injection tool, and probably the first dynamic PE infector ever created.It can be used in order to inject shellcode into native Windows applications (currently 32-bit...
View ArticleHashMyFiles - Calculate MD5/SHA1/CRC32 hashes of your files
HashMyFiles is small utility that allows you to calculate the MD5 and SHA1 hashes of one or more files in your system. You can easily copy the MD5/SHA1 hashes list into the clipboard, or save them into...
View ArticleYASAT - Yet Another Stupid Audit Tool
YASAT (Yet Another Stupid Audit Tool) is a simple stupid audit tool.Its goal is to be as simple as possible with minimum binary dependencies (only sed, grep and cut)Second goal is to document each test...
View ArticlePassive Spider - Information Gathering from Search Engine Tool
Passive Spider uses search engines (currently only Bing supported) to find interesting information about a target domain.INSTALLgit clone https://github.com/RandomStorm/passive-spider.gitcd...
View ArticleHooker - Automated Dynamic Analysis of Android Applications
Hooker is an opensource project for dynamic analysis of Android applications. This project provides various tools and applications that can be use to automaticaly intercept and modify any API calls...
View ArticleWindows Autologin Password Dumper & Manager v2.0
Windows Autologin Password is the free command-line tool to quickly dump and manage the Windows Automatic Logon Password.Automatic Logon is one of the useful feature in Windows which allows you to...
View ArticleAutomater v2.0 - URL/Domain, IP Address, and Md5 Hash OSINT Tool
Automater is a URL/Domain, IP Address, and Md5 Hash OSINT tool aimed at making the analysis process easier for intrusion Analysts. Given a target (URL, IP, or HASH) or a file full of targets Automater...
View Articlewpbf - WordPress Brute Force
The script will try to login into the WordPress dashboard through the login form using a mixture of enumerated usernames, a wordlist and relevant keywords from the blog's content. If a single username...
View ArticleArchAssault - Arch Linux ISO for Penetration Testers
The ArchAssault Project is an Arch Linux derivative for penetration testers, security professionals and all-around Linux enthusiasts. This means we import the vast majority of the official upstream...
View ArticleRemote DLL - Simple & Free Tool to Inject or Remove DLL from Remote Process
RemoteDLL is the simple tool to Inject DLL or Remove DLL from Remote Process. It is based on popular Dll Injection technique.It supports following DLL Injection methods CreateRemoteThread...
View ArticleWireless Network Watcher - Show who is connected to your wireless network
Wireless Network Watcher is a small utility that scans your wireless network and displays the list of all computers and devices that are currently connected to your network.For every computer or device...
View ArticleHackPorts - Mac OS X Penetration Testing Framework and Tools
HackPorts was developed as a penetration testing framework with accompanying tools and exploits that run natively on Mac platforms. HackPorts is a ‘super-project’ that leverages existing code porting...
View ArticleWebSiteSniffer v1.41 - Captures all Web site files downloaded by your Web...
WebSiteSniffer is a packet sniffer tool that captures all Web site files downloaded by your Web browser while browsing the Internet, and stores them on your hard drive under the base folder that you...
View Article