
Modlishka
Modlishka. Reverse Proxy.

Modlishka. Reverse Proxy.

Terminal security for developers and AI agents. Intercepts homograph URLs, pipe-to-shell, ANSI injection, obfuscated payloads, data exfiltration, and…

Generate malicious PDF test files for penetration testing, bug bounty hunting, and red teaming. Tests SSRF, XSS, XXE, NTLM credential theft, and data…

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Real-time phishing & scam domain blocklist - 205k+ curated threats, 1M+ community, free API, multiple formats

All the deals for InfoSec related software/tools this Black Friday

Spoof file icons and extensions in Windows

Fully undetected grabber (grabs wallets, passwords, cookies, modifies discord client etc.)

Don't Just Search OSINT. Sweep It.

Weaponized Browser-in-the-Middle (BitM) for Penetration Testers

it is malicious technique used by hackers to hide malware payloads in an encoded script in a specially crafted HTML attachment or web page

Rogue access point tool for creating captive portals, phishing credentials via cloned login pages, and injecting malware downloads for educational…

Trojanize your payload - WinRAR (SFX) automatization - under Linux distros

A PoC that packages payloads into output containers to evade Mark-of-the-Web flag & demonstrate risks associated with container file formats.…

Rogue Access Point framework for red team engagements and Wi-Fi security testing. Performs Evil Twin, KARMA, and Known Beacons attacks to achieve…

Node.js command-and-control server with FUD payload generation, encrypted communication, session management, and modules for data exfiltration and…

SSH-MITM - ssh audits made simple

⭐️The famous XWorm RAT, version 2.1. Educational purposes only