#1General purpose tools for collecting various types of information about targets.
Kitploit recommended

C# console application for post-exploitation and red team operations, integrating SharpSploit to execute Mimikatz commands, perform Kerberoasting,…

✨ Monitor twitter stream from nodejs electron

CVE-2017-9506 - SSRF

Amazingly fast response crawler to find juicy stuff in the source code! 😎🔥

A streamlined tool for discovering private TLDs for security research.

🏰 A Python script for AWS S3 bucket enumeration.

Common password pattern generator using strings list

Offline command line lookup utility for GTFOBins (https://github.com/GTFOBins/GTFOBins.github.io), LOLBAS (https://github.com/LOLBAS-Project/LOLBAS),…

POC of SecureWorks' recent Azure Active Directory password brute-forcing vuln

Extracts all possible endpoints, URLs, and paths from JavaScript files using customizable regex patterns for web application reconnaissance and API…

A Linux enumeration script for Hack The Box

C# Targeted Attack Reconnissance Tools

Windows KASLR bypass using prefetch side-channel

A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or LFI.

TugaRecon is an advanced subdomain reconnaissance and intelligence framework built for security researchers, penetration testers and OSINT…

Pentesting suite for Maltego based on data in a Metasploit database

Identify the attack paths in BloodHound breaking your AD tiering

Useful for digital forensics investigations or initial black-box pentest footprinting.