
S3Scanner
Scan for misconfigured S3 buckets across S3-compatible APIs!

Scan for misconfigured S3 buckets across S3-compatible APIs!

🔪 :octocat: Leak git repositories from misconfigured websites

Nginxpwner is a simple tool to look for common Nginx misconfigurations and vulnerabilities.

Find open databases - Powered by Binaryedge.io

Curated Google Dork search patterns for web security and bug bounty reconnaissance, covering exposed files, admin panels, CMS instances, logs, and…

Perl-based Joomla CMS vulnerability scanner automating version enumeration, component detection, exploit matching, firewall identification, and…

An offensive/defense security toolset for discovery, recon and ethical assessment of AI Agents

An open-source Secure Email Gateway (SEG) evaluation toolkit designed for red-teamers.

A lightweight PowerShell tool for assessing the security posture of Microsoft Entra ID environments. It helps identify privileged objects, risky…

NERVE Continuous Vulnerability Scanner

HackBox is a powerful and comprehensive tool that combines a variety of techniques for web application and network security assessments, including…

Vajra is a UI-based tool with multiple techniques for attacking and enumerating in the target's Azure and AWS environment. It features an intuitive…

Enemies Of Symfony - Debug mode Symfony looter

Fast service fingerprinting CLI for 170+ protocols (TCP/UDP/SCTP) - built by Praetorian

Find cloud assets that no one wants exposed 🔎 ☁️

Automated reconnaissance wrapper — TomNomNom's meg on steroids. [DEPRECATED]

Tool designed to help identify incorrectly configured Django applications that are exposing sensitive information.

A New Approach to Directory Bruteforce with WaybackLister v1.0