
Vajra
Vajra is a UI-based tool with multiple techniques for attacking and enumerating in the target's Azure and AWS environment. It features an intuitive…

Vajra is a UI-based tool with multiple techniques for attacking and enumerating in the target's Azure and AWS environment. It features an intuitive…

A tool to hunt for publicly accessible DigitalOcean Spaces

CVE-2023-28432 POC

CVE on FlagForge on versions 2.0.0 to 2.3.0. Upgrade to version 2.3.1 to fix the issue.

Samsung Printer SCX-6X55X Improper Access Control

Automated reconnaissance wrapper — TomNomNom's meg on steroids. [DEPRECATED]

Penetration tests guide based on OWASP including test cases, resources and examples.

🔎 Find origin servers of websites behind CloudFlare by using Internet-wide scan data from Censys.

Useful Google Dorks for WebSecurity and Bug Bounty

Local Linux enumeration script that identifies privilege escalation vectors including misconfigurations, world-writable files, clear-text passwords,…

Nuclei Templates Collection

AD Miner is an Active Directory audit tool that leverages cypher queries to crunch data from the #Bloodhound graph database to uncover security…

Subdomain takeover vulnerability checker

Perl-based Joomla CMS vulnerability scanner automating version enumeration, component detection, exploit matching, firewall identification, and…

🔪 :octocat: Leak git repositories from misconfigured websites

A tool to scan Kubernetes cluster for risky permissions

NERVE Continuous Vulnerability Scanner

Fast service fingerprinting CLI for 170+ protocols (TCP/UDP/SCTP) - built by Praetorian