
Seatbelt
C# host-survey tool for offensive and defensive security, performing extensive safety checks on Windows systems including user, system, and network…

C# host-survey tool for offensive and defensive security, performing extensive safety checks on Windows systems including user, system, and network…

Graph-based tool for mapping and analyzing identity and privilege relationships across Active Directory, Azure, and other identity platforms to…

ARP spoofing and MITM tool for intercepting HTTP/FTP/IMAP/POP3/IRC traffic, injecting HTML/JS, DNS spoofing, and WiFi deauth jamming on local…

A reconnaissance tool for capturing and displaying SSIDs from device's Preferred Network List.

City-level reconnaissance and exploitation tool for Hikvision IP cameras, DVRs, and NVRs. Uses Shodan discovery, default credential backdoor…

KisMAC is a free, open source wireless stumbling and security tool for Mac OS X.

Asynchronous network reconnaissance engine for large-scale service discovery and fingerprinting. Identifies unsecured services (RTSP cameras, VNC,…

a tool for pentesters to help find delicious candy, by @l0ss and @Sh3r4 ( Twitter: @/mikeloss and @/sh3r4_hax )

Tool to enumerate privileged Scheduled Tasks on Remote Systems

Attack path mapping for Active Directory, ADCS, SCCM, and MSSQL using BloodHound CE + OpenGraph data.

A Windows userland tool to enumerate and classify ALPC ports, including PPL-protected processes.

Azure Red Team tool for graphing Azure and Azure Active Directory objects

Post-exploitation tool for identifying, profiling, and attacking Microsoft SCCM assets within Active Directory domains, streamlining credential…

Proof-of-Concept tool for extracting credential material from protected sessions on modern Windows systems.

Automated CORS misconfiguration discovery tool using typosquatting domains and browser service workers to probe internal networks of bug bounty…

Offline, full-text search tool for red team commands and techniques with MITRE ATT&CK mapping, fuzzy matching, and built-in MCP server for AI…

Non-destructive WordPress exposure scanner and authorized PoC exploit tool for CVE-2026-63030/CVE-2026-60137. Features version fingerprinting, blind…

Cyberspace asset discovery and reconnaissance tool integrating ZoomEye and Seebug APIs for corporate asset collection, subdomain enumeration, SSL…