
strix
Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.

Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.

PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)

A variant of Gargoyle for x64 to hide memory artifacts using ROP only and PIC

Pingtunnel is a tool that send TCP/UDP traffic over ICMP

Python exploit for CVE-2021-22941 targeting Citrix ShareFile RCE with shell and ping options for remote command execution and network probing.

ISeeYou is a Bash and Javascript tool to find the exact location of the users during social engineering or phishing engagements. Using exact location…

AttackGen is a cybersecurity incident response testing tool that leverages the power of large language models and the comprehensive MITRE ATT&CK…

A fast, keyboard-driven HTTP intercepting proxy and hacking & pentesting toolkit for the terminal.

Find interesting Amazon S3 Buckets by watching certificate transparency logs.

A security scanner for your LLM agentic workflows

Find vulnerabilities in AD Group Policy, but do it better than Grouper2 did.

Find specific users in active directory via their username and logon IP address

Elite is the client-side component of the Covenant project. Covenant is a .NET command and control framework that aims to highlight the attack…

Stealthy In-Memory Local Password Harvester (SILPH) tool: dump LSA, SAM and DCC2 with indirect syscall

Reflective DLL injection is a library injection technique in which the concept of reflective programming is employed to perform the loading of a…

Direct Memory Access (DMA) Attack Software

Automated DLL Hijacking Discovery, Validation, and Confirmation. Turning local misconfigurations into weaponized, confirmed attack paths.

Dump lsass using only NTAPI functions creating 3 JSON and 1 ZIP file... and generate the MiniDump file later!