
zaproxy
Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Educational Android (Termux) toolkit for learning penetration testing, OSINT, social engineering, and network security through hands-on scripts,…

Weaponized Browser-in-the-Middle (BitM) for Penetration Testers

Nishang - Offensive PowerShell for red team, penetration testing and offensive security.

Multi-purpose WiFi penetration testing toolkit for M5Stack devices. Performs network scanning, evil-twin attacks, deauthentication, captive portal…

Generate malicious PDF test files for penetration testing, bug bounty hunting, and red teaming. Tests SSRF, XSS, XXE, NTLM credential theft, and data…

Simulate realistic phishing campaigns with credential harvesting, email tracking, and landing page cloning for security awareness training and…

The SteaLinG is an open-source penetration testing framework designed for social engineering

CamJacking is a tool designed for use in human penetration testing tool. It is intended to simulate potential security threats by testing the…

a CLI for ephemeral penetration testing

FragAttacks WiFi penetration framework — CVE-2020-24586/87/88

Documentation and proof-of-concept for CVE-2026-30502, a reflected XSS vulnerability in OpenKM v6.3.12. Includes technical analysis, root cause,…

Script in Go that analyzes a list of passwords based on in its entropy and weak passwords from a dictionary. Useful for penetration tests and…

The Social-Engineer Toolkit (SET) repository from TrustedSec - All new versions of SET will be deployed here.

All-in-One Hacking Tools For Hackers! And more hacking tools! For termux.


Modlishka. Reverse Proxy.

A tool for generating multiple types of NTLMv2 hash theft files by Jacob Wilkin (Greenwolf)