
sippts
Set of tools to audit SIP based VoIP Systems

Set of tools to audit SIP based VoIP Systems

PXEThief is a set of tooling that can extract passwords from the Operating System Deployment functionality in Microsoft Endpoint Configuration Manager

reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out…

Search Google/Bing/Ecosia/DuckDuckGo/Yandex/Yahoo for a search term (dork) with a default set of websites, bug bounty programs or custom collection.

Enumerate information from NTLM authentication enabled web endpoints 🔎

Technology-aware web content discovery scanner: detects Wappalyzer fingerprints, adapts wordlists/extensions, and performs fast directory bruteforce…

One way to continuously monitor sensitive information that could be exposed on Github

A reconnaissance tool to detect CVE-1999-0524 (ICMP Timestamp Disclosure) by automating timestamp extraction via nping or hping3. Converts raw ICMP…

Scripts to make password spraying attacks against Lync/S4B, OWA & O365 a lot quicker, less painful and more efficient

A tool for checking if MFA is enabled on multiple Microsoft Services

HostHunter a recon tool for discovering hostnames using OSINT techniques.

Extracts and downloads Snap Map media by coordinates for OSINT, forensic analysis, and research. Supports metadata logging and bulk download.

A swiss-knife MCP server for analysing PCAP files

OSCP-focused toolkit for read-only network, SMB, AD, DNS, web, and database enumeration; privesc scanning, hash identification, and…

CVE-2023-23397 C# PoC

A tool to automate the boring process of APK recon

Simple shell script for the exploit

Facebook account information gathering tool that extracts sensitive personal data (residence, DOB, phone, email) even when target privacy is set to…