
BloodBash
Offline AD/Entra attack-path analyzer for SharpHound/AzureHound JSON. Surfaces prioritized privilege escalation, credential, and misconfiguration…

Offline AD/Entra attack-path analyzer for SharpHound/AzureHound JSON. Surfaces prioritized privilege escalation, credential, and misconfiguration…

Poc - CVE-2025-49132

Automates HTTP 403 access control bypass techniques using header manipulation, path obfuscation, and HTTP method conversion for web application…

Simple, fast web crawler designed for easy, quick discovery of endpoints and assets within a web application

Sparty - MS Sharepoint and Frontpage Auditing Tool [Unofficial]

Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.

Centralized network visibility and continuous asset discovery. Monitor devices, detect change, and stay aware across distributed networks.

Automated NoSQL database enumeration and web application exploitation tool.

Six Degrees of Domain Admin

PowerUpSQL: A PowerShell Toolkit for Attacking SQL Server

Linux应急处置/信息搜集/漏洞检测工具,支持基础配置/网络流量/任务计划/环境变量/用户信息/Services/bash/恶意文件/内核Rootkit/SSH/Webshell/挖矿文件/挖矿进程/供应链/服务器风险等13类70+项检查

A list of Google Dorks for Bug Bounty, Web Application Security, and Pentesting

Automated web vulnerability scanner combining URL discovery tools (ParamSpider, waybackurls, gauplus, hakrawler, katana) with Nuclei fuzzing…

AD Miner is an Active Directory audit tool that leverages cypher queries to crunch data from the #Bloodhound graph database to uncover security…

A Splunk app mapped to MITRE ATT&CK to guide your threat hunts

evilwaf is a penetration testing tool designed to detect and bypass common Web Application Firewalls (WAFs).

Web application security scanner created by lcamtuf for google - Unofficial Mirror

A fast DOM based XSS vulnerability scanner with simplicity.