
habu
Multi-purpose network hacking toolkit for penetration testing, ARP poisoning, DNS enumeration, OSINT, cryptography, and web reconnaissance, designed…

Multi-purpose network hacking toolkit for penetration testing, ARP poisoning, DNS enumeration, OSINT, cryptography, and web reconnaissance, designed…

Quick inventory and launcher for pentest commands with tmux integration, global variables, and extensible cheatsheets. Prefills terminal with…

Curated list of OSINT tools for offensive security, covering email harvesting, subdomain enumeration, threat intelligence, and social engineering for…

Automated reconnaissance script for bug bounty and pentesting, integrating subdomain enumeration, port scanning, directory fuzzing, WAF detection,…

Automated Cloudflare origin IP discovery tool using DNS resolution, subdomain enumeration, and misconfiguration scanning to bypass CDN protection…

Manual black-box penetration test of hosting provider infrastructure using curl_cffi and Python. Identifies exposed databases, default credentials,…

Collection of Python and Bash scripts for penetration testing tasks including DNS enumeration, form scraping, shellcode generation, PowerShell…

Utilize misconfigured DNS and old database records to find hidden IP's behind the CloudFlare network

Multi-threaded brute-forcing tool with modular design for password guessing attacks across FTP, SSH, HTTP, databases, and network services. Supports…

🔎 Most Advanced Open Source Intelligence (OSINT) Framework for scanning IP Address, Emails, Websites, Organizations.

Modular framework for injecting fake software updates via DNS spoofing and MITM attacks. Includes built-in DNS and web servers, 60+ pre-configured…

Subdomain and target enumeration tool built for offensive security testing

Automated reconnaissance tool that performs subdomain enumeration, vulnerability scanning, OSINT, port scanning, and web analysis to map attack…

Automated CMS vulnerability scanner with intelligent shell injection, subdomain enumeration, port scanning, DNS analysis, and dork-based exploit…

Network, recon and offensive-security tool for Linux.

An automated Wireless RogueAP MITM attack framework.

Multi-protocol cryptographic analyzer auditing TLS, SSL, SSH, IKE, DNSSEC, and HTTP security headers. Detects 400+ cipher suites, generates JA3/HASSH…