Skip to content
Change the repository type filter

All

    Repositories list

    • gavel

      Public
      Maltego Transforms to Query Traffic Records
      Python
      7000Updated Oct 8, 2015Oct 8, 2015
    • scripts

      Public
      Scripts I use during pentest engagements.
      Python
      337100Updated Oct 7, 2015Oct 7, 2015
    • wpsploit

      Public
      WPSploit - Exploiting Wordpress With Metasploit
      Ruby
      MIT License
      66000Updated Sep 10, 2015Sep 10, 2015
    • MITMf

      Public
      Framework for Man-In-The-Middle attacks
      Python
      GNU General Public License v3.0
      1.1k000Updated Sep 10, 2015Sep 10, 2015
    • wireless hacking - This is evil twin attack automated
      Python
      GNU General Public License v3.0
      255000Updated Sep 9, 2015Sep 9, 2015
    • ranger

      Public
      An attack and penetration tool that automates the identification of viable targets on an internal network using native protocols. The tool can then be used to extract cleartext credentials from the memory of vulnerable systems.
      Python
      Other
      8000Updated Sep 8, 2015Sep 8, 2015
    • sonar.js

      Public
      A framework for identifying and launching exploits against internal network hosts. Works via WebRTC IP enumeration combined with WebSockets and external resource fingerprinting.
      JavaScript
      MIT License
      74000Updated Sep 8, 2015Sep 8, 2015
    • Sn1per

      Public
      Automated Pentest Recon Scanner
      PHP
      1.9k000Updated Sep 7, 2015Sep 7, 2015
    • A swiss army knife for pentesting Windows/Active Directory environments
      PowerShell
      BSD 2-Clause "Simplified" License
      1.7k000Updated Sep 7, 2015Sep 7, 2015
    • XSSTracer

      Public
      A small exploit/poc/script to check for Cross-Site Tracing (XST)
      Python
      60000Updated Sep 6, 2015Sep 6, 2015
    • Subdomain Analyzer
      Python
      GNU General Public License v3.0
      23000Updated Sep 3, 2015Sep 3, 2015
    • Social engineering tool for human hacking
      Python
      35000Updated Aug 29, 2015Aug 29, 2015
    • Various Cheat Sheets related to development and security
      Shell
      BSD 3-Clause "New" or "Revised" License
      41000Updated Aug 28, 2015Aug 28, 2015
    • An example of a reverse RAT (remote administration tool / trojan horse) written in NodeJS. Highly experimental.
      JavaScript
      7100Updated Aug 28, 2015Aug 28, 2015
    • NetRipper

      Public
      NetRipper - Smart traffic sniffing for penetration testers
      PowerShell
      316000Updated Aug 28, 2015Aug 28, 2015
    • XSSPosed-releases is tool that extracts latest XSS vulnerabilities published
      Python
      3000Updated Aug 26, 2015Aug 26, 2015
    • Tool for automatic exploitation of XXE vulnerability using direct and different out of band methods.
      Ruby
      317000Updated Aug 25, 2015Aug 25, 2015
    • katoolin

      Public
      Automatically install all Kali linux tools
      Python
      GNU General Public License v2.0
      1.3k000Updated Aug 22, 2015Aug 22, 2015
    • snifflab

      Public
      Scripts to create your own MITM'ing, packet sniffing WiFi access point
      Python
      32000Updated Aug 21, 2015Aug 21, 2015
    • OWASP-ZSC

      Public
      OWASP ZCR Shellcoder
      HTML
      GNU General Public License v3.0
      212000Updated Aug 21, 2015Aug 21, 2015
    • snuck

      Public
      Automatic XSS filter bypass
      Java
      45000Updated Aug 20, 2015Aug 20, 2015
    • Tools for use with phishing frenzy
      Python
      9000Updated Aug 18, 2015Aug 18, 2015
    • Android Digital Bank Vulnerable Mobile App
      Java
      133700Updated Aug 15, 2015Aug 15, 2015
    • Loot

      Public
      Sensitive information extraction tool.
      Python
      0000Updated Aug 15, 2015Aug 15, 2015
    • caparser

      Public
      A quick and dirty PCAP parser that helps you identify who your applications are sending sensitive data to without encryption.
      Ruby
      22000Updated Aug 14, 2015Aug 14, 2015
    • H5SC

      Public
      HTML5 Security Cheatsheet - A collection of HTML5 related XSS attack vectors
      JavaScript
      Mozilla Public License 2.0
      421000Updated Aug 13, 2015Aug 13, 2015
    • Passive recon / OSINT automation script
      Python
      GNU General Public License v3.0
      10000Updated Aug 12, 2015Aug 12, 2015
    • Intelligence gathering framework
      Ruby
      BSD 3-Clause "New" or "Revised" License
      270000Updated Aug 11, 2015Aug 11, 2015
    • Python tool to aid in the collection of OSINT data
      Python
      25000Updated Aug 10, 2015Aug 10, 2015
    • osint-4

      Public
      Query IP and domains against VirusTotal and public blocklists
      Python
      MIT License
      0000Updated Aug 4, 2015Aug 4, 2015