-
-
BChecks Public
Forked from PortSwigger/BChecksBChecks collection for Burp Suite Professional and Burp Suite DAST
GNU Lesser General Public License v3.0 UpdatedJul 18, 2025 -
-
jsjack Public
Scrapy-based tool to detect orphan JavaScript scripts embedded in web sites
Python UpdatedJul 7, 2025 -
updog3 Public
Forked from sc0tfree/updogUpdog3 is a fork of Sc0tfree's Updog tool, which was a replacement for Python's SimpleHTTPServer. It allows uploading and downloading via HTTP/S. Updog3 can set ad hoc and custom SSL certificates, …
-
psdnsexfil Public
A native PowerShell dns exfiltration tool. Server side is python. Supports compression and encryption.
-
goLAPS Public
Retrieve LAPS passwords from a domain. The tools is inspired in pyLAPS.
-
-
-
DNSBruteForcer Public
Zone transfer a domain from its own NS servers and bruteforce subdomains
-
-
telestalker Public
PoC to geo-locate users in dating apps. Described in post https://blog.felipemolina.com/posts/2024-10-30-Breaking-geo-location-Enabled-Apps/
Python UpdatedNov 4, 2024 -
pydnsbl Public
Forked from dmippolitov/pydnsblAsync dnsbl spam lists checker based on asyncio/aiodns.
Python MIT License UpdatedAug 29, 2024 -
hacktricks Public
Forked from HackTricks-wiki/hacktricksWelcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and news.
Python Other UpdatedNov 5, 2023 -
evilginx2 Public
Forked from kgretzky/evilginx2Standalone man-in-the-middle attack framework used for phishing login credentials along with session cookies, allowing for the bypass of 2-factor authentication
Go BSD 3-Clause "New" or "Revised" License UpdatedSep 11, 2023 -
-
nuclei-templates Public
Forked from projectdiscovery/nuclei-templatesCommunity curated list of templates for the nuclei engine to find security vulnerabilities.
Python MIT License UpdatedMay 10, 2022 -
kismet-heatmap Public
Forked from bliksemlabs/kismet-heatmapConvert gpsxml files to png files which can be opened in Qgis
Python BSD 2-Clause "Simplified" License UpdatedNov 19, 2021 -
MailSniper Public
Forked from dafthack/MailSniperMailSniper is a penetration testing tool for searching through email in a Microsoft Exchange environment for specific terms (passwords, insider intel, network architecture information, etc.). It ca…
PowerShell MIT License UpdatedSep 23, 2019 -
keystorebruteforce Public
Script to brute force and dictionary attack a Java keystore file
-
robotstxt Public
Script to update most frequent disallowed robots.txt entries
-
rules Public
Forked from Yara-Rules/rulesRepository of yara rules
Shell GNU General Public License v2.0 UpdatedMay 12, 2017 -
Keepnote_import_nmap Public
Plugin for keepnote to import a XML nmap file
-
bulkreversedns Public
This script, simply request a reverse lookup from a big list of IP to the specified DNS server.
-
NVDparser Public archive
Access to NVD, download XML files, parse it and stores in sqlite3 database
-
DNSProspect Public
Detect services of a given domain using SRV DNS records
-
RobotsRider Public archive
Explore robots.txt files and visit the disallowed entries, recording the results and showing juicy URLs
-
supercookies Public archive
Check if your ISP is injecting supercookies in your mobile connection
-
INCIBEBotDetect Public archive
Script to periodically check if there is an infected maching in you LAN
-
FreakVulnChecker Public
This script check if your list of server is accepting Export cipher suites and could be vulnerable to CVE-2015-0204