
CosmicRakp
Go-based tool to exploit CVE-2013-4786 for dumping IPMI password hashes via RAKP authentication, supporting concurrent scanning of IP ranges or…

Go-based tool to exploit CVE-2013-4786 for dumping IPMI password hashes via RAKP authentication, supporting concurrent scanning of IP ranges or…

Go tool that passively discovers the real origin IP behind a WAF/CDN using multiple OSINT sources, then verifies candidates via HTML similarity, SSL…

Fetches JavaScript files quickly and comprehensively.

Find endpoints on GitHub.

a Go code to detect leaks in JS files via regex patterns

A personal tool in GO for my usual first enumeration steps on a target

HOCig- Automatic HOC Information Gathering Tool V 1.2

A tool to perform Kerberos pre-auth bruteforcing

OSINT tool to find breached emails, databases, pastes, and relevant information

Semi-automated, feedback-driven tool to rapidly search through troves of public data on GitHub for sensitive secrets.

Tool to find JavaScript files on Websites

Security tool to find potential vulnerable Server Side Request Forgery (SSRF) parameters.

A python tool to map the access rights of network shares into a BloodHound OpenGraphs easily

A penetration testing tool to enumerate and analyse Amazon S3 Buckets owned by a domain.

A fast tool to mass scan for a vulnerability on Microsoft Exchange Server that allows an attacker bypassing the authentication and impersonating as…

A tool to enumerate S3 buckets manually or via certstream

Pentester-focused Docker registry tool to enumerate and pull images