Stars
evilwaf is a penetration testing tool designed to detect and bypass common Web Application Firewalls (WAFs).
A C# MS SQL toolkit designed for offensive reconnaissance and post-exploitation.
PingCastle - Get Active Directory Security at 80% in 20% of the time
Attempt at Obfuscated version of SharpCollection
This function runs a number of checks on a system to help provide situational awareness to a penetration tester during the reconnaissance phase. It gathers information about the local system, users…
BloodyAD is an Active Directory Privilege Escalation Framework
Fileless lateral movement tool that relies on ChangeServiceConfigA to run command
A collection of useful tools and scripts were developed and gathered throughout the Offensive Security's PEN-300 (OSEP) course.
bypass 360,huorong,tencent,defender with Split loading technique and unhooking
BadAssMacros - C# based automated Malicous Macro Generator.
XenocodeRCE / neo-ConfuserEx
Forked from yck1509/ConfuserExUpdated ConfuserEX, an open-source, free obfuscator for .NET applications
rasta-mouse / ThreatCheck
Forked from matterpreter/DefenderCheckIdentifies the bytes that Microsoft Defender / AMSI Consumer flags on.
An MCP server to run AppleScript and JXA (JavaScript for Automation) to macOS.
This is MCP server for Claude that gives it terminal control, file system search and diff file editing capabilities
Browser MCP is a Model Context Provider (MCP) server that allows AI applications to control your browser
MCP server for maigret, a powerful OSINT tool that collects user account information from various public sources.
Collection of apple-native tools for the model context protocol.
Playwright Model Context Protocol Server - Tool to automate Browsers and APIs in Claude Desktop, Cline, Cursor IDE and More 🔌
All-in-one security testing toolbox that brings together popular open source tools through a single MCP interface. Connected to an AI agent, it enables tasks like pentesting, bug bounty hunting, th…
MCP 资源精选, MCP指南,Claude MCP,MCP Servers, MCP Clients
Collection of Pentest Notes and Cheatsheets
A list of SaaS, PaaS and IaaS offerings that have free tiers of interest to devops and infradev
🌐 The open-source Agentic browser; privacy-first alternative to Perplexity Comet, Arc, Dia
Constrain, log and scan your MCP connections for security vulnerabilities.