-
Faculty of computers and informatics, zagazig university
Stars
Python version of the C# tool for "Shadow Credentials" attacks
Tool for Active Directory Certificate Services enumeration and abuse
A semi-interactive PHP shell compressed into a single file.
PowerShell Pass The Hash Utils
A tool to dump the login password from the current linux user
Collection of one-liners to bypass User Account Control (UAC) in Windows. These techniques exploit certain behavior in Windows applications to elevate privileges.
SharpDPAPI is a C# port of some Mimikatz DPAPI functionality.
One place for all the default credentials to assist the Blue/Red teamers identifying devices with default password 🛡️
The ultimate WinRM shell for hacking/pentesting
Impacket is a collection of Python classes for working with network protocols.
Crowbar is brute forcing tool that can be used during penetration tests. It is developed to support protocols that are not currently supported by thc-hydra and other popular brute forcing tools.
A next generation version of enum4linux (a Windows/Samba enumeration tool) with additional features like JSON/YAML export. Aimed for security professionals and CTF players.
Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv2/LMv2, Extended Security NTLMSSP and Basic HTTP authenticat…
Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static a…
Software to identify the different types of hashes -
Never ever ever use pixelation as a redaction technique
InQL is a robust, open-source Burp Suite extension for advanced GraphQL testing, offering intuitive vulnerability detection, customizable scans, and seamless Burp integration.
🛰️ Represent any GraphQL API as an interactive graph
GraphQL threat framework used by security professionals to research security gaps in GraphQL implementations
graphw00f is GraphQL Server Engine Fingerprinting utility for software security professionals looking to learn more about what technology is behind a given GraphQL endpoint.
Username tools for penetration testing