#1DNS reconnaissance, monitoring, tunneling detection, and DNS security analysis tools.
Kitploit recommended

(extensible) Data Exfiltration Toolkit (DET)

Automated script for setting up CobaltStrike redirectors (nginx reverse proxy, letsencrypt)

Patch for CVE-2017-14491 in dnsmasq 2.4.1, fixing a heap-based buffer overflow in DNS response handling to prevent remote code execution.

Scan .onion hidden services with nmap using Tor, proxychains and dnsmasq in a minimal alpine Docker container.

outis is a custom Remote Administration Tool (RAT) or something like that. It was build to support various transport methods (like DNS) and platforms…

DGA Domain Detection using Bigram Frequency Analysis

The repository that contains the algorithms for generating domain names, dictionaries of malicious domain names. Developed to research the…

Proof-of-concept exploit for CVE-2017-9430, a stack-based buffer overflow in dnstracer 1.9, triggered via a long command-line argument causing denial…

Web application that lets you test if your domain is vulnerable to email spoofing

Programmable packet inspection engine with NIDS, DNS classification, frequency analysis, and auto-regex generation. Supports Python/Ruby/Java/Lua…

Nameserver DNS poisoning attacks made easy

A DNS meta-query spider that enumerates DNS records, and subdomains.

Scripts to detect Fast-Flux and DGA using DNS query responses

LSTM-based classifier for detecting domain generation algorithm (DGA) domains, with Keras implementations of neural network and bigram models for DNS…

Proof-of-concept exploit for CVE-2015-7547, a glibc getaddrinfo() stack-based buffer overflow. Includes server and client components to trigger the…

A flow-based network monitor with Deep Packet Inspection

Sets Transparent proxy tunnel through Tor, I2P, Privoxy, Polipo and modify DNS; Include Anonymizing Relay Monitor (arm), macchanger and wipe (Cleans…

DNS-Shell is an interactive Shell over DNS channel