- All languages
- ASP
- ActionScript
- Arduino
- Assembly
- AutoIt
- Batchfile
- BlitzBasic
- Boo
- C
- C#
- C++
- CSS
- CodeQL
- Dart
- Dockerfile
- Go
- HCL
- HTML
- Haskell
- Java
- JavaScript
- Jupyter Notebook
- Kotlin
- Less
- Lua
- Makefile
- Mask
- Objective-C
- PHP
- Pascal
- Perl
- PowerShell
- Python
- Rich Text Format
- Ruby
- Rust
- Scala
- Shell
- Smali
- Smarty
- Standard ML
- Swift
- TeX
- TypeScript
- VBA
- VBScript
- Vim Script
- Visual Basic
- Vue
- XSLT
- YARA
- Zeek
Starred repositories
Patator is a multi-purpose brute-forcer, with a modular design and a flexible usage.
FLARE Obfuscated String Solver - Automatically extract obfuscated strings from malware.
Fast and powerful SSL/TLS scanning library.
PENTEST-WIKI is a free online security knowledge library for pentesters / researchers. If you have a good idea, please share it with others.
This program show you IMSI numbers of cellphones around you.
A fast sub domain brute tool for pentesters
Headless chrome/chromium automation library (unofficial port of puppeteer)
💀 Generate a bunch of malicious pdf files with phone-home functionality. Can be used with Burp Collaborator or Interact.sh
A DNS meta-query spider that enumerates DNS records, and subdomains.
Patch PE, ELF, Mach-O binaries with shellcode new version in development, available only to sponsors
Automatic SSRF fuzzer and exploitation tool
Web app for Scrapyd cluster management, Scrapy log analysis & visualization, Auto packaging, Timer tasks, Monitor & Alert, and Mobile UI. Docs 文档 👉
An advanced web directory & file scanning tool that will be more powerful than DirBuster, Dirsearch, cansina, and Yu Jian.一个高级web目录、文件扫描工具,功能将会强于DirBuster、Dirsearch、cansina、御剑。
Neo-reGeorg is a project that seeks to aggressively refactor reGeorg
This tool generates gopher link for exploiting SSRF and gaining RCE in various servers
oletools - python tools to analyze MS OLE2 files (Structured Storage, Compound File Binary Format) and MS Office documents, for malware analysis, forensics and debugging.
DataSploit / datasploit
Forked from dvopsway/datasploitAn #OSINT Framework to perform various recon techniques on Companies, People, Phone Number, Bitcoin Addresses, etc., aggregate all the raw data, and give data in multiple formats.
DEPRECATED, wifipumpkin3 -> https://github.com/P0cL4bs/wifipumpkin3
The successor to reDuh, pwn a bastion webserver and create SOCKS proxies through the DMZ. Pivot and pwn.
Investigate malicious Windows logon by visualizing and analyzing Windows event log
SSH server auditing (banner, key exchange, encryption, mac, compression, compatibility, security, etc)
JSFinder is a tool for quickly extracting URLs and subdomains from JS files on a website.