Automatic SQL injection and database takeover tool
Python
Updated Dec 29, 2018
Pupy is an opensource, cross-platform (Windows, Linux, OSX, Android) remote administration and post-exploitation tool…
Python
Updated Dec 29, 2018
The Mobile Security Testing Guide (MSTG) is a comprehensive manual for mobile app security testing and reverse engin…
A swiss army knife for pentesting networks
Automated pentest framework for offensive security experts
Collaborative Penetration Test and Vulnerability Management Platform
Python
Updated Dec 11, 2018
An Information Security Reference That Doesn't Suck
Python
Updated Oct 29, 2018
巡风是一款适用于企业内网的漏洞快速应急,巡航扫描系统。
Python
Updated Dec 24, 2018
Automated All-in-One OS command injection and exploitation tool.
Python
Updated Dec 18, 2018
A collection of open source and commercial tools that aid in red team operations.
Updated Nov 15, 2018
The Leading Security Assessment Framework for Android.
Python
Updated Dec 10, 2018
OWASP Juice Shop: Probably the most modern and sophisticated insecure web application
Cameradar hacks its way into RTSP videosurveillance cameras
The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mo…
Updated Nov 12, 2018
Wiki to collect Red Team infrastructure hardening resources
Updated Nov 7, 2018
The LAZY script will make your life easier, and of course faster.
Shell
Updated Dec 25, 2018
Directory/file & DNS busting tool written in Go
Go
Updated Dec 18, 2018
A high performance offensive security tool for reconnaissance and vulnerability scanning
Know the dangers of credential reuse attacks.
Python
Updated Nov 3, 2018
📡 A python program to create a fake AP and sniff data.
Python
Updated Feb 6, 2018
This is a multi-use bash script for Linux systems to audit wireless networks.
Shell
Updated Dec 29, 2018
Abusing Certificate Transparency logs for getting HTTPS websites subdomains.
Python
Updated Nov 16, 2018
SubFinder is a subdomain discovery tool that discovers valid subdomains for websites. Designed as a passive framework…
An evil RAT (Remote Administration Tool) for macOS / OS X.
Python
Updated Dec 9, 2018
The cheat sheet about Java Deserialization vulnerabilities
Updated Dec 29, 2018
File upload vulnerability scanner and exploitation tool.
Python
Updated Oct 31, 2018
🔥 A powerful MongoDB auditing and pentesting tool 🔥
Python
Updated Apr 2, 2018
RedSnarf is a pen-testing / red-teaming tool for Windows environments
PowerShell
Updated Jul 6, 2018
Open Source Vulnerability Assessment and Management helps developers and pentesters to perform scans and manage vulne…
HTML
Updated Dec 20, 2018
Penetration Testing / OSCP Biggest Reference Bank / Cheatsheet
Updated Dec 12, 2018