
naabu
A fast port scanner written in go with a focus on reliability and simplicity. Designed to be used in combination with other tools for attack surface…

A fast port scanner written in go with a focus on reliability and simplicity. Designed to be used in combination with other tools for attack surface…

Web-based red team activity logging, reporting, and situational awareness tool with Cobalt Strike and BloodHound integration.

Asynchronous RDP client for Python (headless)

Scan WordPress installations for wp2shell vulnerabilities (CVE-2026-63030 + CVE-2026-60137). Identifies full RCE and SQL injection risks across…

Automated web reconnaissance tool consolidating dig, nmap, httpx, curl, and whois into a single scan for IP resolution, port discovery, technology…

Threat hunting command system for agentic IDEs

Universal Reddit Scraper - A comprehensive Reddit scraping/archival command-line tool.

Scriptable MITM attack modules and automation caplets for the Bettercap framework, enabling network reconnaissance, traffic manipulation, and Wi-Fi…

Automated observable analysis engine for threat intelligence, digital forensics, and incident response, integrating with diverse analyzers via a…

An modular asset discovery framework written in python to automate the repeating manual work

Automatically run and save ffuf scans for multiple IPs

A Rust CLI tool that recursively discovers Git repositories, captures state changes, generates diffs, extracts code elements with full snippets, and…

Automated reconnaissance and XSS detection framework integrating subfinder, httpx, katana, gospider, waybackurls, and dalfox into a 9-stage pipeline…

CLI tool for automating HTTP request routing through Burp Suite proxy to load reconnaissance URLs and streamline web application security testing…

Automated subdomain monitoring tool with scheduled scanning, Discord alerts, and a web dashboard. Uses subfinder, dnsx, and httpx to detect new and…

PowerShell-based discovery tool for CVE-2025-15467, enabling automated vulnerability detection and exploitation assessment in target environments.

Shell script collection for SMB protocol auditing, vulnerability detection (EternalBlue, SMBGhost), null session enumeration, credential brute-force,…

Attack surface discovery and AI-assisted triage for security researchers. Endpoint & parameter mapping with actionable testing hints.