
RFCpwn
An enumeration and exploitation toolkit using RFC calls to SAP

An enumeration and exploitation toolkit using RFC calls to SAP


Find credentials in screenshots, save them to your secret manager, and irreversibly redact them from the image — local, offline, OCR-based.

CVE-2023-39144 disclosure: cleartext password exposure in Element55 Maketime appliance admin pages, enabling privilege escalation via…

SocialPwned is an OSINT tool that allows to get the emails, from a target, published in social networks such as Instagram, Linkedin and Twitter to…

World's fastest and most advanced password recovery utility

Complete suite for WiFi network security auditing, including packet capture, injection attacks, deauthentication, fake AP creation, and WEP/WPA PSK…

Free cross-platform password manager compatible with KeePass

Nishang - Offensive PowerShell for red team, penetration testing and offensive security.

A powerful and useful hacker dictionary builder for a brute-force attack


A wordlist framework to fullfill your kinks with your wordlists. For security researchers, bug bounty and hackers.

PACK (Password Analysis and Cracking Kit)

Browser-based password cracking toolkit with hash lookup, wordlist generation, rule-based attack simulation, and client-side hash cracking for…

🔎Searches Hash APIs to crack your hash quickly🔎 If hash is not found, automatically pipes into HashCat⚡

Standalone password candidate generator using the PRINCE algorithm

Hashcat reference for OSCP/penetration testing: hash identification, cracking syntax for Linux, Windows, archives, databases, Kerberos tickets, and…

A native backdoor module for Microsoft IIS (Internet Information Services)