
doctrack
Tool to manipulate and weaponize Office Open XML documents.

Tool to manipulate and weaponize Office Open XML documents.

Educational PDF files demonstrating client-side exploitation techniques, including calculator execution and directory browsing, for security testing…

Python-Based Pentesting CLI Tool

Python-Based Pentesting Framework


MCP server for Google search and page fetching using headless Chromium

PowerShell toolkit for remote template injection attacks and defense. Injects malicious links into Office Word documents for phishing, with…

The SteaLinG is an open-source penetration testing framework designed for social engineering

CATPHISH project - For phishing and corporate espionage. Perfect for RED TEAM.


crawls the website and finds broken social media links that can be hijacked

An forensics tool to help aid in the investigation of spoofed emails based off the email headers.

Real-time phishing platform that bypasses 2FA via a live noVNC browser session, capturing cookies, saved passwords, browsing history, and downloaded…

Harvests NetNTLM hashes in Windows domains via a local WebDAV server, with LNK file poisoning and Office document field code injection for lateral…

Bash-based domain availability checker that scans WHOIS records across multiple TLDs to find unregistered domains for red teaming and phishing…

A Python tool for ingesting HTML and producing HTML source suitable for phishing campaigns.

A Python script to collect campaign data from Gophish and generate a report

VPN Overall Reconnaissance, Testing, Enumeration and eXploitation Toolkit