Automatic SQL injection and database takeover tool
Python
Updated Oct 26, 2018
Pupy is an opensource, cross-platform (Windows, Linux, OSX, Android) remote administration and post-exploitation tool…
Python
Updated Oct 19, 2018
The Mobile Security Testing Guide (MSTG) is a comprehensive manual for mobile app security testing and reverse engin…
A swiss army knife for pentesting networks
Automated Pentest Framework for Offensive Security Experts
Collaborative Penetration Test and Vulnerability Management Platform
Python
Updated Oct 23, 2018
An Information Security Reference That Doesn't Suck
Python
Updated Oct 19, 2018
Automated All-in-One OS command injection and exploitation tool.
Python
Updated Oct 26, 2018
巡风是一款适用于企业内网的漏洞快速应急,巡航扫描系统。
Python
Updated Oct 18, 2018
The Leading Security Assessment Framework for Android.
Python
Updated Sep 20, 2018
A collection of open source and commercial tools that aid in red team operations.
Updated Oct 24, 2018
The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mo…
Updated Aug 27, 2018
Cameradar hacks its way into RTSP videosurveillance cameras
OWASP Juice Shop is an intentionally insecure webapp for security trainings written entirely in Javascript which enco…
Wiki to collect Red Team infrastructure hardening resources
Updated Sep 1, 2018
The LAZY script will make your life easier, and of course faster.
Shell
Updated Jul 31, 2018
📡 A python program to create a fake AP and sniff data.
Python
Updated Feb 6, 2018
A high performance offensive security tool for reconnaissance and vulnerability scanning
Know the dangers of credential reuse attacks.
Python
Updated Oct 14, 2018
Directory/file & DNS busting tool written in Go
Go
Updated Oct 21, 2018
This is a multi-use bash script for Linux systems to audit wireless networks.
Shell
Updated Oct 22, 2018
Abusing Certificate Transparency logs for getting HTTPS websites subdomains.
Python
Updated Oct 16, 2018
The cheat sheet about Java Deserialization vulnerabilities
Updated Oct 22, 2018
An evil RAT (Remote Administration Tool) for macOS / OS X.
Python
Updated Aug 17, 2018
🔥 A powerful MongoDB auditing and pentesting tool 🔥
Python
Updated Apr 2, 2018
SubFinder is a subdomain discovery tool that discovers valid subdomains for websites. Designed as a passive framework…
RedSnarf is a pen-testing / red-teaming tool for Windows environments
PowerShell
Updated Jul 6, 2018
The iOS Security Testing Framework
Python
Updated Oct 4, 2018
Automate getting Domain Admin using Empire
Python
Updated Jul 22, 2018
Open Source Vulnerability Assessment and Management helps developers and pentesters to perform scans and manage vulne…
HTML
Updated Oct 25, 2018