


OWASP D4N155 - Intelligent and dynamic wordlist using OSINT

Tsunami is a general purpose network security scanner with an extensible plugin system for detecting high severity vulnerabilities with high…

Automated web screenshot tool for reconnaissance, capturing site visuals, server headers, and identifying default credentials. Supports multiple…

The dynamic infrastructure framework for everybody! Distribute the workload of many different scanning tools with ease, including nmap, ffuf,…

american fuzzy lop - a security-oriented fuzzer

Domain-fronted HTTP/SOCKS5 proxy tunneling traffic through Google Apps Script with MITM TLS interception, HTTP/1-2 multiplexing, and DPI evasion.

An on-path blackbox network traffic security testing tool

A collection of scripts for assessing Microsoft Azure security

Multi-cloud OSINT tool. Enumerate public resources in AWS, Azure, and Google Cloud.

AWSGoat : A Damn Vulnerable AWS Infrastructure

Martian is a library for building custom HTTP/S proxies

Guardian is a production-ready AI-powered penetration testing automation CLI tool that leverages Google Gemini and LangChain to orchestrate…

BigBountyRecon tool utilises 58 different techniques using various Google dorks and open source tools to expedite the process of initial…

SocialPwned is an OSINT tool that allows to get the emails, from a target, published in social networks such as Instagram, Linkedin and Twitter to…

A collection of AWS penetration testing junk

Cloud Security Suite - One stop tool for auditing the security posture of AWS/GCP/Azure infrastructure.