Skip to content
View mlinton's full-sized avatar

Block or report mlinton

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
87 stars written in Python
Clear filter

A list of useful payloads and bypass for Web Application Security and Pentest/CTF

Python 72,383 16,337 Updated Dec 12, 2025

Set up a personal VPN in the cloud

Python 30,176 2,356 Updated Dec 15, 2025

Most advanced XSS scanner.

Python 14,575 2,042 Updated Apr 26, 2025

CTF framework and exploit development library

Python 13,110 1,792 Updated Dec 15, 2025

Fast subdomains enumeration tool for penetration testers

Python 10,731 2,200 Updated Aug 2, 2024

Credentials recovery project

Python 10,545 2,114 Updated Sep 18, 2025

A swiss army knife for pentesting networks

Python 9,005 1,703 Updated Dec 6, 2023

Pupy is an opensource, cross-platform (Windows, Linux, OSX, Android) C2 and post-exploitation framework written in python and C

Python 8,910 1,856 Updated Mar 22, 2024

A utility for arming (creating) many bees (micro EC2 instances) to attack (load test) targets (web applications).

Python 6,611 631 Updated Mar 28, 2024

Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv2/LMv2, Extended Security NTLMSSP and Basic HTTP authenticat…

Python 6,172 844 Updated Dec 5, 2025

WAFW00F allows one to identify and fingerprint Web Application Firewall (WAF) products protecting a website.

Python 6,053 1,015 Updated Sep 13, 2025

Cowrie SSH/Telnet Honeypot https://docs.cowrie.org/

Python 6,036 999 Updated Dec 18, 2025

EyeWitness is designed to take screenshots of websites, provide some server header info, and identify default credentials if possible.

Python 5,562 902 Updated Nov 7, 2025

Automated All-in-One OS Command Injection Exploitation Tool.

Python 5,553 908 Updated Dec 11, 2025

The Leading Security Assessment Framework for Android.

Python 4,396 821 Updated Jun 24, 2025

Printer Exploitation Toolkit - The tool that made dumpster diving obsolete.

Python 4,191 643 Updated Aug 2, 2024

This tool compares a targets patch levels against the Microsoft vulnerability database in order to detect potential missing patches on the target. It also notifies the user if there are public expl…

Python 4,159 1,047 Updated May 11, 2023

Network recon framework. Build your own, self-hosted and fully-controlled alternatives to Shodan / ZoomEye / Censys and GreyNoise, run your Passive DNS service, build your taylor-made EASM tool, co…

Python 3,889 674 Updated Dec 6, 2025

Patator is a multi-purpose brute-forcer, with a modular design and a flexible usage.

Python 3,820 829 Updated May 20, 2025

File upload vulnerability scanner and exploitation tool.

Python 3,282 517 Updated May 8, 2025

Tweets metadata scraper & activity analyzer

Python 2,975 452 Updated Nov 14, 2023

Automated Security Testing For REST API's

Python 2,629 411 Updated Jun 5, 2024

Privilege Escalation Project - Windows / Linux / Mac

Python 2,594 464 Updated Oct 4, 2024

CMS Detection and Exploitation suite - Scan WordPress, Joomla, Drupal and over 180 other CMSs

Python 2,496 515 Updated Apr 9, 2024

JexBoss: Jboss (and Java Deserialization Vulnerabilities) verify and EXploitation Tool

Python 2,485 640 Updated Jan 21, 2020
Python 2,303 428 Updated Dec 8, 2023

Know the dangers of credential reuse attacks.

Python 2,080 408 Updated Dec 9, 2025

Abusing Certificate Transparency logs for getting HTTPS websites subdomains.

Python 2,074 294 Updated Jan 2, 2024

The most complete open-source tool for Twitter intelligence analysis

Python 1,955 272 Updated Feb 6, 2019

pwning IPv4 via IPv6

Python 1,866 265 Updated Feb 20, 2024
Next