Highlights
Stars
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
An interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers.
Automatic SQL injection and database takeover tool
Ready-to-use OCR with 80+ supported languages and all popular writing scripts including Latin, Chinese, Arabic, Devanagari, Cyrillic and etc.
⚡ Automatically decrypt encryptions without knowing the key or cipher, decode encodings, and crack hashes ⚡
Automated nginx proxy for Docker containers using docker-gen
Impacket is a collection of Python classes for working with network protocols.
MVT (Mobile Verification Toolkit) helps with conducting forensics of mobile devices in order to find signs of a potential compromise.
PyTorch package for the discrete VAE used for DALL·E.
eeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeee
A powerful and user-friendly binary analysis platform!
Scanning APK file for URIs, endpoints & secrets.
The FLARE team's open-source tool to identify capabilities in executable files.
Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv2/LMv2, Extended Security NTLMSSP and Basic HTTP authenticat…
Veil 3.1.X (Check version info in Veil at runtime)
Server-Side Template Injection and Code Injection Detection and Exploitation Tool
Patator is a multi-purpose brute-forcer, with a modular design and a flexible usage.
💀 Generate a bunch of malicious pdf files with phone-home functionality. Can be used with Burp Collaborator or Interact.sh
Vulmap 是一款 web 漏洞扫描和验证工具, 可对 webapps 进行漏洞扫描, 并且具备漏洞验证功能
A collection of custom security tools for quick needs.
Neo-reGeorg is a project that seeks to aggressively refactor reGeorg
This tool generates gopher link for exploiting SSRF and gaining RCE in various servers
Tool for Active Directory Certificate Services enumeration and abuse
JexBoss: Jboss (and Java Deserialization Vulnerabilities) verify and EXploitation Tool
Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata alerts.