Stars
CloudGoat is Rhino Security Labs' "Vulnerable by Design" AWS deployment tool
Tool for Active Directory Certificate Services enumeration and abuse
pagodo (Passive Google Dork) - Automate Google Hacking Database scraping and searching
The successor to reDuh, pwn a bastion webserver and create SOCKS proxies through the DMZ. Pivot and pwn.
Mining URLs from dark corners of Web Archives for bug hunting/fuzzing/further probing
Fully featured and community-driven hacking environment
Generates permutations, alterations and mutations of subdomains and then resolves them
Zero shot vulnerability discovery using LLMs
This tool extracts Credit card numbers, NTLM(DCE-RPC, HTTP, SQL, LDAP, etc), Kerberos (AS-REQ Pre-Auth etype 23), HTTP Basic, SNMP, POP, SMTP, FTP, IMAP, etc from a pcap file or from a live interface.
A Python based ingestor for BloodHound
Extract credentials from lsass remotely
A deliberately vulnerable CI/CD environment. Learn CI/CD security through multiple challenges.
A python script to automatically coerce a Windows server to authenticate on an arbitrary machine through 12 methods.
Abusing Certificate Transparency logs for getting HTTPS websites subdomains.
A tool for checking the security hardening options of the Linux kernel
BloodyAD is an Active Directory Privilege Escalation Framework
Multi-cloud OSINT tool. Enumerate public resources in AWS, Azure, and Google Cloud.
Sniffs sensitive data from interface or pcap
linuxprivchecker.py -- a Linux Privilege Escalation Check Script
A .DS_Store file disclosure exploit. It parses .DS_Store file and downloads files recursively.
The SpecterOps project management and reporting engine
Nginxpwner is a simple tool to look for common Nginx misconfigurations and vulnerabilities.
GraphQLmap is a scripting engine to interact with a graphql endpoint for pentesting purposes. - Do not use for illegal testing ;)
Orange Cyberdefense mindmaps
Kerberos relaying and unconstrained delegation abuse toolkit
A pentest reporting tool written in Python. Free yourself from Microsoft Word.