Quantcast
Channel: KitPloit - PenTest Tools!
Browsing all 5816 articles
Browse latest View live

Image may be NSFW.
Clik here to view.

DR.CHECKER - A Soundy Vulnerability Detection Tool for Linux Kernel Drivers

DR.CHECKER: A Soundy Vulnerability Detection Tool for Linux Kernel DriversTested onUbuntu >= 14.04.5 LTS1. SetupThe implementation is based on LLVM, specifically LLVM 3.8. We also need tools like...

View Article


Image may be NSFW.
Clik here to view.

The Endorser - An OSINT tool that allows you to draw out relationships...

An OSINT tool that allows you to draw out relationships between people on LinkedIn via endorsements/skills.Check out the example (digraph), which is based on mine and my colleagues (David Prince)...

View Article


Image may be NSFW.
Clik here to view.

ysoserial.net - Deserialization payload generator for a variety of .NET...

A proof-of-concept tool for generating payloads that exploit unsafe .NET object deserialization.Descriptionysoserial.net is a collection of utilities and property-oriented programming "gadget chains"...

View Article

Image may be NSFW.
Clik here to view.

TeleShadow v2 - Advanced Telegram Desktop Session Hijacker!

Advanced Telegram Desktop Session Hijacker!Stealing desktop telegrams has never been so easy !Set the email and sender details of the sender and recipient and send it to the victim after compiling.How...

View Article

Image may be NSFW.
Clik here to view.

Zeus-Scanner - Advanced Reconnaissance Utility

Zeus is an advanced reconnaissance utility designed to make web application reconnaissance simple. Zeus comes complete with a powerful built-in URL parsing engine, multiple search engine compatibility,...

View Article


Image may be NSFW.
Clik here to view.

net-Shield - An Easy and Simple Anti-DDoS solution for VPS, Dedicated Servers...

An Easy and Simple Anti-DDoS solution for VPS,Dedicated Servers and IoT devices based on iptables.RequirementsLinux System with python, iptablesNginx (Will be installed automatically by...

View Article

Image may be NSFW.
Clik here to view.

Pipe Finder - Automated script to search in SMB protocol for availables pipe...

Automated script to search in SMB protocol for availables pipe names.Requirementsmetasploit-frameworkwgetpipe_audit_v2.rb module (https://github.com/peterpt/pipe_auditor_fb) - It will be installed on...

View Article

Image may be NSFW.
Clik here to view.

WPSploit - WordPress Plugin Code Scanner

This tool is intended for Penetration Testers who auditWordPress plugins or developers who wish to audit their own WordPress plugins. For more info click here.Usage$ git clone...

View Article


Image may be NSFW.
Clik here to view.

Amber - POC Reflective PE Packer

Amber is a proof of concept packer, it can pack regularly compiled PE files into reflective PE files that can be used as multi stage infection payloads. If you want to learn the packing methodology...

View Article


Image may be NSFW.
Clik here to view.

Cr3dOv3r 0.2 - Know The Dangers Of Credential Reuse Attacks

Your best friend in credential reuse attacks.Cr3dOv3r simply you give it an email then it does two simple jobs (but useful) :Search for public leaks for the email and if it any, it returns with all...

View Article

Image may be NSFW.
Clik here to view.

WhatWeb 0.4.9 - Next Generation Web Scanner

WhatWeb identifies websites. Its goal is to answer the question, “What is that Website?”. WhatWeb recognises web technologies including content management systems (CMS), blogging platforms,...

View Article

Image may be NSFW.
Clik here to view.

M3UAScan - A Scanner for M3UA protocol to detect Sigtran supporting nodes

A Scanner for M3UA protocol to detect Sigtran supporting nodesM3UA stands for MTP Level 3 (MTP3) User Adaptation Layer as defined by the IETF SIGTRAN working group in RFC 4666 .M3UA enables the SS7...

View Article

Image may be NSFW.
Clik here to view.

Bucket Stream - Find interesting Amazon S3 Buckets by watching certificate...

Find interesting Amazon S3 Buckets by watching certificate transparency logs.This tool simply listens to various certificate transparency logs (via certstream) and attempts to find public S3 buckets...

View Article


Image may be NSFW.
Clik here to view.

arp-validator - Security Tool To Detect ARP Poisoning Attacks

Security Tool to detect arp poisoning attacks.FeaturesUses a faster approach in detection of arp poisoning attacks compared to passive approachesDetects not only presence of ARP Poisoning but also...

View Article

Image may be NSFW.
Clik here to view.

XSSSNIPER - An Automatic XSS Discovery Tool

XSSSNIPER is an handy xssdiscovery tool with mass scanning functionalities.Usage:Usage: xsssniper.py [options]Options: -h, --help show this help message and exit -u URL, --url=URL target URL --post try...

View Article


Image may be NSFW.
Clik here to view.

difuze - Fuzzer for Linux Kernel Drivers

Fuzzer for Linux Kernel DriversTested onUbuntu >= 14.04.5 LTSAs explained in our paper, There are two main components of difuze: Interface Recovery and Fuzzing Engine1. Interface RecoveryThe...

View Article

Image may be NSFW.
Clik here to view.

WebDavC2 - A WebDAV C2 Tool

WebDavC2 is a PoC of using the WebDAV protocol with PROPFIND only requests to serve as a C2 communication channel between an agent, running on the target system, and a controller acting as the actuel...

View Article


Image may be NSFW.
Clik here to view.

HonSSH - Log all SSH communications between a client and server

HonSSH is a high-interaction Honey Pot solution.HonSSH will sit between an attacker and a honey pot, creating two separate SSH connections between them.FeaturesCaptures all connection attempts to a...

View Article

Image may be NSFW.
Clik here to view.

Hijacker v1.4 - All-in-One Wi-Fi Cracking Tools for Android

Hijacker is a Graphical User Interface for the penetration testing tools Aircrack-ng, Airodump-ng, MDK3 and Reaver. It offers a simple and easy UI to use these tools without typing commands in a...

View Article

Image may be NSFW.
Clik here to view.

0d1n v2.5 - Web Security Tool to Make Fuzzing at HTTP/S

Web security tool to make fuzzing at HTTP inputs, made in C with libCurl. 0d1n is a tool for automating customized attacks against web applications.You can do:Brute force passwords in auth...

View Article
Browsing all 5816 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>