sslscan - tests SSL/TLS enabled services to discover supported cipher suites
This is a fork of ioerror's version of sslscan (the original readme of which is included below). Changes are as follows: Highlight SSLv2 and SSLv3 ciphers in output. Highlight CBC ciphers on SSLv3...
View ArticleLobotomy - Android Reverse Engineering
Lobotomy is a command line based Android reverse engineering tool. What is in the repo, is currently in development. You should assume nothing works as expected until the official 2.0 release is...
View ArticleFluxion 0.23 - WPA/WPA2 Security Hacked Without Brute Force
Fluxion is a remake of linset by vk496 with (hopefully) less bugs and more functionality. It's compatible with the latest release of Kali (rolling). Latest builds (stable) and (beta) can be found here...
View ArticleParrot Security 3.3 - Security GNU/Linux distribution designed with cloud...
Security GNU/Linux distribution designed with cloud pentesting and IoT security in mind.It includes a full portable laboratory for security and digital forensics experts, but it also includes all you...
View ArticleTelegram BBBot - Telegram Bug Bounty Bot
Telegram Bug Bounty Bot https://telegram.me/bug_bounty_channel History This bot adopted special for deploying to Heroku General purposes of this got - "Be helpful for infosec community!" Bot use...
View ArticleCommix 1.6 - Automated All-In-One OS Command Injection And Exploitation Tool
Commix (short for [ comm ]and [ i ]njection e[ x ]ploiter) is an automated tool written by Anastasios Stasinopoulos ( @ancst ) that can be used from web developers, penetration testers or even...
View ArticleHakku Framework - Simple Penetration Testing Framework
Hakku is simple framework that has been made for penetration testing tools. Hakku framework offers simple structure, basic CLI, and useful features for penetration testing tools developing. Hakku is on...
View ArticleBARF - A multiplatform open source Binary Analysis and Reverse engineering...
The analysis of binary code is a crucial activity in many areas of the computer sciences and software engineering disciplines ranging from software security and program analysis to reverse engineering....
View ArticlemitmAP - Simple Tool to Create a Fake AP and Sniff Data
_ _ ___ ______ (_) | / _ \ | ___ \ _ __ ___ _| |_ _ __ ___ / /_\ \| |_/ /| '_ ` _ \| | __| '_ ` _ \| _ || __/ | | | | | | | |_| | | | | | | | || | |_| |_| |_|_|\__|_| |_| |_\_| |_/\_| 2.1 A python...
View ArticleWifijammer - Continuously Jam All Wifi Clients/Routers
Continuously jam all wifi clients and access points within range. The effectiveness of this script is constrained by your wireless card. Alfa cards seem to effectively jam within about a block radius...
View ArticleSteghide - Brute Force Attack to Find Hide Information and Password in a file
Execute a brute force attack with Steghide to file with hide information and password established. How it work Cloning this repo to your computer and typing in your terminal: git clone...
View Articlexsscrapy - XSS/SQLi Spider
Fast, thorough, XSS/SQLi spider. Give it a URL and it'll test every link it finds for cross-site scripting and some SQL injection vulnerabilities. See FAQ for more details about SQLi detection. From...
View ArticleSnuck - Automatic XSS filter bypass
snuck is an automated tool that can definitely help in finding XSS vulnerabilities in web applications. It is based on Selenium and supports Mozilla Firefox, Google Chrome and Internet Explorer. The...
View ArticleChromebackdoor - Backdoor C&C for Populars Browsers
Chromebackdoor is a pentest tool, this tool use a MITB technique for generate a windows executable ".exe" after launch run a malicious extension or script on most popular browsers, and send all DOM...
View ArticleKickThemOut - Kick Devices Off Your Network
A tool to kick devices out of your network and enjoy all the bandwidth for yourself. It allows you to select specific or all devices and ARP spoofs them off your local area network. Compatible with...
View ArticleAutoLocalPrivilegeEscalation - An automated script that download potential...
An automated script that download potential exploit for linux kernel from exploitdb, and compile them automatically This script is created due to Hackademics, there are so much possible exploit for...
View ArticleDAVScan - Fingerprints servers, finds exploits, scans WebDAV
DAVScan is a quick and lightweight webdav scanner designed to discover hidden files and folders on DAV enabled webservers. The scanner works by taking advantage of overly privileged/misconfigured...
View ArticleAcunetix Release Web Site Security Pen Testing Tools Free
HTTP editor, fuzzer and sniffer tools help pen testers identify vulnerabilitiesLondon, UK – January 2016 – Hot on the release of Acunetix Version 11, pioneering web application security software...
View Articlecustom-bytecode-analyzer - Java bytecode analyzer customizable via JSON rules
Java bytecode analyzer customizable via JSON rules. It is a command-line tool that receives a path containing one or more Jar files, analyzes them using the provided rules and generates HTML reports...
View ArticleOperative - The Fingerprint Framework
__ _ ____ ____ ___ _________ _/ /_(_) _____ / __ \/ __ \/ _ \/ ___/ __ `/ __/ / | / / _ \/ /_/ / /_/ / __/ / / /_/ / /_/ /| |/ / __/\____/ .___/\___/_/ \__,_/\__/_/ |___/\___/ /_/ This is a framework...
View Article