
hawk
Network, recon and offensive-security tool for Linux.

Network, recon and offensive-security tool for Linux.

An automated Wireless RogueAP MITM attack framework.

Multi-threaded brute-forcing tool with modular design for password guessing attacks across FTP, SSH, HTTP, databases, and network services. Supports…

Manual black-box penetration test of hosting provider infrastructure using curl_cffi and Python. Identifies exposed databases, default credentials,…

Curated list of OSINT tools for offensive security, covering email harvesting, subdomain enumeration, threat intelligence, and social engineering for…

Utilize misconfigured DNS and old database records to find hidden IP's behind the CloudFlare network

Modular framework for injecting fake software updates via DNS spoofing and MITM attacks. Includes built-in DNS and web servers, 60+ pre-configured…

Automated CMS vulnerability scanner with intelligent shell injection, subdomain enumeration, port scanning, DNS analysis, and dork-based exploit…

Multi-purpose network hacking toolkit for penetration testing, ARP poisoning, DNS enumeration, OSINT, cryptography, and web reconnaissance, designed…

🔎 Most Advanced Open Source Intelligence (OSINT) Framework for scanning IP Address, Emails, Websites, Organizations.

Automated reconnaissance script for bug bounty and pentesting, integrating subdomain enumeration, port scanning, directory fuzzing, WAF detection,…

Subdomain and target enumeration tool built for offensive security testing

Quick inventory and launcher for pentest commands with tmux integration, global variables, and extensible cheatsheets. Prefills terminal with…

Automated reconnaissance tool that performs subdomain enumeration, vulnerability scanning, OSINT, port scanning, and web analysis to map attack…

Multi-protocol cryptographic analyzer auditing TLS, SSL, SSH, IKE, DNSSEC, and HTTP security headers. Detects 400+ cipher suites, generates JA3/HASSH…

Automated Cloudflare origin IP discovery tool using DNS resolution, subdomain enumeration, and misconfiguration scanning to bypass CDN protection…