
nishang
Nishang - Offensive PowerShell for red team, penetration testing and offensive security.

Nishang - Offensive PowerShell for red team, penetration testing and offensive security.

MagicArch is a comprehensive post-installation script built with Ansible, designed to transform a basic Arch Linux installation into a fully equipped…

Offensive Docker is an image with the more used offensive tools to create an environment easily and quickly to launch assessment to the targets.

A vulnerable Boot-to-Root CTF lab machine simulating a hospital environment. Features a realistic 17-step attack chain including SQL Injection, XSS,…

Educational lab demonstrating CVE-2024-21413 Outlook vulnerability exploitation with Python email exploit tool and Responder for NTLM credential…

Curated collection of Google dork queries for advanced search engine reconnaissance, uncovering exposed databases, configuration files, admin panels,…

CrackerJack / Hashcat Web Interface / Context Information Security

A production-ready, cryptographically secure password generator CLI with 17 generation modes, entropy transparency, and comprehensive customization…

Professional JWT security testing toolkit. Analyze, crack, forge, and exploit JSON Web Tokens with 15+ vulnerability checks, 100k secret wordlist,…

tool for generating wordlists or extending an existing one using mutations.

Selenium based web scraper to generate passwords list

python3写的综合扫描工具,主要用来存活验证,敏感文件探测(目录扫描/js泄露接口/html注释泄露),WAF/CDN识别,端口扫描,指纹/服务识别,操作系统识别,POC扫描,SQL注入,绕过CDN,查询旁站等功能,主要用来甲方自测或乙方授权测试,请勿用来搞破坏。

Crawler (Bot) searching for credential leaks on paste sites.

Generates targeted password wordlists by combining personal info, applying case/leet transforms, and scraping artist lyrics for enhanced cracking…

High-performance OSINT/CTI framework for automated identity pivoting and risk analysis across 120+ sources.

A friend of SQLmap which will do what you always expected from SQLmap.

A web front-end for password cracking and analytics

CVE-2024-44815