
credcheck
Modular credential validation framework with active and passive (regex-based) checking modes for penetration testers. Supports multiple services via…

Modular credential validation framework with active and passive (regex-based) checking modes for penetration testers. Supports multiple services via…

Modular Python3 attack framework for automating exploitation of SIEM platforms (Splunk, Graylog, OSSIM, QRadar, McAfee) via credential theft, payload…

A handy tool that helps to create your own wordlist for Metasploit framework, in order to carry out a password spray attack against various network…

A little tool to play with Windows security

Infection Monkey - An open-source adversary emulation platform

A collection of tools which integrate with Cobalt Strike (and possibly other C2 frameworks) through BOF and reflective DLL loading techniques.

A complete Go port of Impacket - 63 CLI tools and 24 libraries for Windows & Active Directory protocol attacks, compiled to a single dependency-free…


A tool to automate penetration tests

Cisco ASA Software and ASDM Security Research

Metasploit module for CVE-2025-24071 - Windows NTLM Hash Leak via .library-ms

Initialized & connected PostgreSQL to Metasploit. Reconnoitered 10.1.16.0/24 with Nmap and imported results. Enumerated hosts/services using SYN, SMB…

Perforce security research and tools - CVE-2026-6043

The LAZY script will make your life easier, and of course faster.

Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management

Post-exploitation framework for automated network authentication testing, credential harvesting, and lateral movement across Windows/AD environments…

An #OSINT Framework to perform various recon techniques on Companies, People, Phone Number, Bitcoin Addresses, etc., aggregate all the raw data, and…

The Offensive Manual Web Application Penetration Testing Framework.