Stars
Unified repository for different Metasploit Framework payloads
Arsenal is just a quick inventory and launcher for hacking programs
Aliasr is a modern, feature-rich TUI launcher for penetration testing commands inspired by Arsenal, but with significantly improved functionality.
SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, se…
A Python based RAT 🐀 (Remote Access Trojan) for getting reverse shell 🖥️
Browser Chrome extensions, to help with OSINT, OPSEC, Privacy & Obfuscation.
A collection of awesome browser extension useful for OSINT along with their use case.
Tools and Techniques for Red Team / Penetration Testing
RSA attack tool (mainly for ctf) - retrieve private key from weak public key and/or uncipher data
Updog is a replacement for Python's SimpleHTTPServer. It allows uploading and downloading via HTTP/S, can set ad hoc SSL certificates and use http basic auth.
"Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.
match command-line arguments to their help text
The Social-Engineer Toolkit (SET) repository from TrustedSec - All new versions of SET will be deployed here.
OSINT tools for Information gathering, Cybersecurity, Reverse searching, bugbounty, trust and safety, red team oprations and more.
Initial Access and Post-Exploitation Tool for AAD and O365 with a browser-based GUI
LLM Council works together to answer your hardest questions
OWASP Juice Shop: Probably the most modern and sophisticated insecure web application
Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management
QRLJacking or Quick Response Code Login Jacking is a simple-but-nasty attack vector affecting all the applications that relays on “Login with QR code” feature as a secure way to login into account…
A communal outpouring of online resources for learning different things in cybersecurity
The Swiss Army knife for 802.11, BLE, HID, CAN-bus, IPv4 and IPv6 networks reconnaissance and MITM attacks.