
domains-from-csp
A script to extract domain names from Content Security Policy(CSP) headers

A script to extract domain names from Content Security Policy(CSP) headers

Toolkit for Playing with Wi-Fi Probe Requests

Automated secret and leak detection scanner for GitHub and paste sites, with heuristic filtering, IOL enrichment via Shhgit/TruffleHog, and ELK-based…

A collection of hacking / penetration testing resources to make you better!

Tangalanga: the Zoom conference scanner hacking tool

Amazingly fast response crawler to find juicy stuff in the source code! 😎🔥

InfoHound is an OSINT to extract a large amount of data given a web domain name.

Download the entire Wayback Machine archive for a given URL.

🌐 Automatically enumerate and fingerprint SD-WAN nodes on the internet

C# Data Collector for the BloodHound Project, Version 3

Parses Snaffler output file and generate beautified outputs.

User enumeration and password bruteforce on Azure, ADFS, OWA, O365, Teams and gather emails on Linkedin

Enumerate Microsoft 365 Groups in a tenant with their metadata

A password spraying tool for Microsoft Online accounts (Azure/O365). The script logs if a user cred is valid, if MFA is enabled on the account, if a…

L1 SOC Analysis: OSINT detection and risk validation of publicly exposed MikroTik RouterOS vulnerable to RCE | Tools: Shodan, NIST NVD

Exploit for CVE-2017-5487 to enumerate WordPress user accounts via the REST API, extracting sensitive information from vulnerable 4.7 installations.

✨ Monitor twitter stream from nodejs electron

Guardian is a production-ready AI-powered penetration testing automation CLI tool that leverages Google Gemini and LangChain to orchestrate…