
WinPwn
Automation for internal Windows Penetrationtest / AD-Security

Automation for internal Windows Penetrationtest / AD-Security

Automating situational awareness for cloud penetration tests.

Find web directories without bruteforce

Checks expired domains for categorization/reputation and Archive.org history to determine good candidates for phishing and C2 domain names

Notion as a platform for offensive operations

Python and Powershell internal penetration testing framework

Tests your WAF with +160 payloads

Specify targets and run sets of tools against them

Finds public elite anonymity proxies and concurrently tests them

Subdomains analysis and generation tool. Reveal the hidden!

Azure mindmap for penetration tests

Agentic Pentesting MCP server that discovers, exploits, and reports web application vulnerabilities.

Technical Reference to multiple relay techniques

This C# tool sprays for admin access over the entire domain


A modular framework designed to chain and automate security tests.

Free XP on bug bounty, vulnerability scanning by wrapping well maintained tools, to perform automated tests. Alongside AI agents for binary analysis,…

Barcha is your Swiss‑Army knife for SQL Injection reconnaissance 🔍. Written in Go, it automates: Shodan enumeration of SSL hosts 🕵️♂️ Liveness &…