
RXScan
Rust CLI for bounded network reconnaissance: TCP/UDP port discovery, service identification, DNS/TLS/HTTP evidence collection, and public-source…

Rust CLI for bounded network reconnaissance: TCP/UDP port discovery, service identification, DNS/TLS/HTTP evidence collection, and public-source…

A single binary that folds a port scanner, the full Exploit-DB index (47k entries) and runnable exploit modules into one tool. Written in Rust, runs…

a passive OSINT toolkit in python - usernames, emails, domains, ips, phones, hashes. no keys, no logins.

a passive OSINT toolkit in python usernames, emails, domains, ips, phones, hashes. no keys, no logins.

AI-native penetration testing IDE where operators and an AI agent share browser, terminals, traffic capture, shells, asset graph, tasks, and evidence…

BSSID Search in Apple's public WPS service

The Ultimate Information Gathering Toolkit

An educational Python toolkit for authorized penetration testing: threaded port scanner, subdomain & directory enumeration, banner grabber and host…

End-to-end recon and exploitation of a known backdoor (CVE-2010-2075) on Metasploitable2 using Nmap and Metasploit.

Network packet and pcap file crafting/sniffing/manipulation/visualization security tool. Originally forked from scapy in 2015 and providing python3…

A tool to scrape the AWS ranges looking for a keyword in SSL certificate data.

quicmap is a simple yet quic (!) QUIC protocol scanner

A Python script to parse net blocks & domain names from SPF record

Identify IP addresses owned by public cloud providers

Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container

NMAP script to enumerate users via finger

An nmap script to produce target lists for use with various tools.

A port scanner written purely in PowerShell.