
Zeebsploit
Modular exploitation framework for penetration testing, featuring automated payload generation, reconnaissance modules, and post-exploitation…

Modular exploitation framework for penetration testing, featuring automated payload generation, reconnaissance modules, and post-exploitation…

Modular memory webshell generator supporting Java containers (Tomcat, Spring, WebLogic) with multiple shell types, encoders, and automatic…

POC-T强化版本 POC-S , 用于红蓝对抗中快速验证Web应用漏洞, 对功能进行强化以及脚本进行分类添加,自带dnslog等, 平台补充来自vulhub靶机及其他开源项目的高可用POC

CLI tool to search CVEs and exploits from NIST, ExploitDB, and GitHub databases. Supports exploit compilation detection and lists latest critical…

Automated penetration testing tool using Cyber Attack Techniques Scoring (CATS) to select and execute optimal attack scenarios via Metasploit, Nmap,…

A Linux enumeration script for Hack The Box

Declarative penetration testing orchestration framework

Python and Metasploit exploit for Oracle WebLogic WLS-WSAT deserialization vulnerability (CVE-2017-10271) with detection scanning and remote code…

Red Team engagement platform with the goal of unifying offensive tools behind a simple UI

Automated bug bounty & recon framework — wraps Subfinder, Naabu, Httpx, Nuclei, Nmap, CVEMap, Gowitness, Katana & more behind a unified web UI

Automate Metasploit scanning and exploitation

An advanced graphical search engine for Exploit-DB

Pentesting suite for Maltego based on data in a Metasploit database

Mogwai Java Management Extensions (JMX) Exploitation Toolkit

Fetch, install and search exploit archives from exploit sites.

Cloud Exploit Framework

Framework for exploiting local vulnerabilities

Responsive Command and Control System