
hackbox
HackBox is a powerful and comprehensive tool that combines a variety of techniques for web application and network security assessments, including…

HackBox is a powerful and comprehensive tool that combines a variety of techniques for web application and network security assessments, including…

Enemies Of Symfony - Debug mode Symfony looter

Retrieve AD accounts description and search for password in it

SSPanel UIM is a multi-purpose agency service sales management system specially designed for Shadowsocks / V2Ray / Trojan protocols. SSPanel-Uim…

[CVE-2021-3019] LanProxy Directory Traversal

This script is used to identify MongoDB services that are network-exposed and allow unauthenticated protocol handshakes.

Scan for misconfigured S3 buckets across S3-compatible APIs!

Curated Google Dork search patterns for web security and bug bounty reconnaissance, covering exposed files, admin panels, CMS instances, logs, and…

🔪 :octocat: Leak git repositories from misconfigured websites

Perl-based Joomla CMS vulnerability scanner automating version enumeration, component detection, exploit matching, firewall identification, and…

An offensive/defense security toolset for discovery, recon and ethical assessment of AI Agents

An open-source Secure Email Gateway (SEG) evaluation toolkit designed for red-teamers.

Fast service fingerprinting CLI for 170+ protocols (TCP/UDP/SCTP) - built by Praetorian

A lightweight PowerShell tool for assessing the security posture of Microsoft Entra ID environments. It helps identify privileged objects, risky…

NERVE Continuous Vulnerability Scanner

Find cloud assets that no one wants exposed 🔎 ☁️

Tool designed to help identify incorrectly configured Django applications that are exposing sensitive information.

Vajra is a UI-based tool with multiple techniques for attacking and enumerating in the target's Azure and AWS environment. It features an intuitive…