Skip to content
View vflame6's full-sized avatar
👾
👾

Block or report vflame6

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
186 stars written in Python
Clear filter

CloudGoat is Rhino Security Labs' "Vulnerable by Design" AWS deployment tool

Python 3,370 704 Updated Sep 18, 2025

Tool for Active Directory Certificate Services enumeration and abuse

Python 3,226 433 Updated Sep 30, 2025

pagodo (Passive Google Dork) - Automate Google Hacking Database scraping and searching

Python 3,145 529 Updated Sep 29, 2025

The successor to reDuh, pwn a bastion webserver and create SOCKS proxies through the DMZ. Pivot and pwn.

Python 3,129 830 Updated Mar 6, 2025

Mining URLs from dark corners of Web Archives for bug hunting/fuzzing/further probing

Python 2,907 464 Updated Jun 24, 2024

Fancy reverse and bind shell handler

Python 2,834 282 Updated Aug 9, 2024

Fully featured and community-driven hacking environment

Python 2,647 253 Updated Oct 28, 2025

Generates permutations, alterations and mutations of subdomains and then resolves them

Python 2,452 450 Updated Jan 9, 2025

Zero shot vulnerability discovery using LLMs

Python 2,383 274 Updated Feb 6, 2025

Flutter Reverse Engineering Framework

Python 2,297 260 Updated Sep 13, 2025

This tool extracts Credit card numbers, NTLM(DCE-RPC, HTTP, SQL, LDAP, etc), Kerberos (AS-REQ Pre-Auth etype 23), HTTP Basic, SNMP, POP, SMTP, FTP, IMAP, etc from a pcap file or from a live interface.

Python 2,286 428 Updated Aug 22, 2025

A Python based ingestor for BloodHound

Python 2,273 359 Updated Oct 24, 2025

Extract credentials from lsass remotely

Python 2,159 255 Updated Nov 5, 2025

A deliberately vulnerable CI/CD environment. Learn CI/CD security through multiple challenges.

Python 2,155 379 Updated Jul 14, 2024

A python script to automatically coerce a Windows server to authenticate on an arbitrary machine through 12 methods.

Python 2,120 207 Updated Sep 5, 2025

Abusing Certificate Transparency logs for getting HTTPS websites subdomains.

Python 2,072 294 Updated Jan 2, 2024

A tool for checking the security hardening options of the Linux kernel

Python 1,983 173 Updated Nov 1, 2025

BloodyAD is an Active Directory Privilege Escalation Framework

Python 1,964 188 Updated Oct 29, 2025

Multi-cloud OSINT tool. Enumerate public resources in AWS, Azure, and Google Cloud.

Python 1,950 289 Updated Jul 12, 2025

pwning IPv4 via IPv6

Python 1,853 262 Updated Feb 20, 2024

Sniffs sensitive data from interface or pcap

Python 1,790 444 Updated Nov 2, 2023

linuxprivchecker.py -- a Linux Privilege Escalation Check Script

Python 1,730 538 Updated Jan 31, 2022

ODAT: Oracle Database Attacking Tool

Python 1,715 350 Updated Jul 27, 2024

A .DS_Store file disclosure exploit. It parses .DS_Store file and downloads files recursively.

Python 1,695 297 Updated May 6, 2023

The SpecterOps project management and reporting engine

Python 1,663 223 Updated Nov 7, 2025

Nginxpwner is a simple tool to look for common Nginx misconfigurations and vulnerabilities.

Python 1,571 151 Updated Mar 4, 2024

GraphQLmap is a scripting engine to interact with a graphql endpoint for pentesting purposes. - Do not use for illegal testing ;)

Python 1,566 214 Updated Mar 11, 2024

Orange Cyberdefense mindmaps

Python 1,475 240 Updated Mar 10, 2025

Kerberos relaying and unconstrained delegation abuse toolkit

Python 1,448 211 Updated Jan 27, 2025

A pentest reporting tool written in Python. Free yourself from Microsoft Word.

Python 1,436 247 Updated Mar 27, 2025