-
Nmap-Bomber Public
Forked from mchklt/Nmap-BomberPort scanning is crucial in recon, but running it manually on big scopes? Nope. That’s why I made Nmap Bomber a Python script that runs fast and furious parallel nmap scans on your subdomains.
Python UpdatedJul 31, 2025 -
ShadowHound Public
Forked from Friends-Security/ShadowHoundPowerShell scripts for alternative SharpHound enumeration, including users, groups, computers, and certificates, using the ActiveDirectory module (ADWS) or System.DirectoryServices class (LDAP).
PowerShell MIT License UpdatedDec 1, 2024 -
Eclipse Public
Forked from Kudaes/EclipseActivation Context Hijack
Rust Apache License 2.0 UpdatedNov 28, 2024 -
-
Active-Directory-Exploitation-Cheat-Sheet Public
Forked from S1ckB0y1337/Active-Directory-Exploitation-Cheat-SheetA cheat sheet that contains common enumeration and attack methods for Windows Active Directory.
MIT License UpdatedJul 26, 2024 -
adidnsdump Public
Forked from dirkjanm/adidnsdumpActive Directory Integrated DNS dumping by any authenticated user
Python MIT License UpdatedDec 13, 2023 -
wapiti Public
Forked from wapiti-scanner/wapitiWeb vulnerability scanner written in Python3
-
-
testssl.sh Public
Forked from testssl/testssl.shTesting TLS/SSL encryption anywhere on any port
Shell GNU General Public License v2.0 UpdatedAug 22, 2022 -
hoaxshell Public
Forked from t3l3machus/hoaxshellAn unconventional Windows reverse shell, currently undetected by Microsoft Defender and various other AV solutions, solely based on http(s) traffic.
Python BSD 2-Clause "Simplified" License UpdatedAug 11, 2022 -
afrog Public
Forked from zan8in/afrogAFROG- A tool for finding vulnerabilities
Go MIT License UpdatedMay 8, 2022 -
Source2URL Public
Forked from danielmiessler/Source2URLParse source code directories and output list of URLs that are then sent through a proxy.
UpdatedApr 30, 2022 -
Fast web fuzzer written in Go
-
rengine Public
Forked from yogeshojha/renginereNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines, recon data correlation and organization, continuous …
JavaScript GNU General Public License v3.0 UpdatedApr 17, 2022 -
feroxbuster Public
Forked from epi052/feroxbusterA fast, simple, recursive content discovery tool written in Rust.
Rust MIT License UpdatedApr 15, 2022 -
dnstake Public
Forked from pwnesia/dnstakeDNSTake — A fast tool to check missing hosted DNS zones that can lead to subdomain takeover
Go MIT License UpdatedApr 15, 2022 -
osmedeus Public
Forked from j3ssie/osmedeusA Workflow Engine for Offensive Security
Go MIT License UpdatedApr 12, 2022 -
attack_range Public
Forked from splunk/attack_rangeA tool that allows you to create vulnerable instrumented local or cloud environments to simulate attacks against and collect the data into Splunk
Jinja Apache License 2.0 UpdatedApr 6, 2022 -
-
Mythic Public
Forked from its-a-feature/MythicA collaborative, multi-platform, red teaming framework
-
semgrep Public
Forked from semgrep/semgrepLightweight static analysis for many languages. Find bug variants with patterns that look like source code.
OCaml GNU Lesser General Public License v2.1 UpdatedMar 17, 2022 -
checkov Public
Forked from bridgecrewio/checkovPrevent cloud misconfigurations during build-time for Terraform, CloudFormation, Kubernetes, Serverless framework and other infrastructure-as-code-languages with Checkov by Bridgecrew.
Python Apache License 2.0 UpdatedMar 16, 2022 -
dnsvalidator Public
Forked from vortexau/dnsvalidatorMaintains a list of IPv4 DNS servers by verifying them against baseline servers, and ensuring accurate responses.
Python UpdatedJan 24, 2022 -
EyeWitness Public
Forked from RedSiege/EyeWitnessEyeWitness is designed to take screenshots of websites, provide some server header info, and identify default credentials if possible.
Python GNU General Public License v3.0 UpdatedJan 10, 2022 -
theHarvester Public
Forked from laramies/theHarvesterE-mails, subdomains and names Harvester - OSINT
Python UpdatedJan 7, 2022 -
-
bbrf-client Public
Forked from honoki/bbrf-clientThe Bug Bounty Reconnaissance Framework (BBRF) can help you coordinate your reconnaissance workflows across multiple devices
Python MIT License UpdatedJan 3, 2022 -
subfinder Public
Forked from projectdiscovery/subfinderSubfinder is a subdomain discovery tool that discovers valid subdomains for websites. Designed as a passive framework to be useful for bug bounties and safe for penetration testing.
Go MIT License UpdatedDec 22, 2021 -
donut Public
Forked from TheWover/donutGenerates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs them with parameters
C BSD 3-Clause "New" or "Revised" License UpdatedDec 16, 2021 -
houdini Public
Forked from yamakadi/houdiniA rust library that allows you to delete your executable while it's running.
Rust MIT License UpdatedNov 14, 2021