
writehat
A pentest reporting tool written in Python. Free yourself from Microsoft Word.

A pentest reporting tool written in Python. Free yourself from Microsoft Word.

A fork of JSONPath from http://goessner.net/articles/JsonPath/

Portable, dependency-free incident response tool that automates forensic artifact collection from Unix-like systems, including memory acquisition,…

Composable command-line toolkit for malware triage and binary analysis: decode, decrypt, carve, and extract indicators from malicious files and…

Burp Suite plugin for generating and executing Nuclei vulnerability templates directly from HTTP requests and responses, with YAML auto-complete and…

Armory is a tool meant to take in a lot of external and discovery data from a lot of tools, add it to a database and correlate all of related…

Fetch, install and search wordlist archives from websites and torrent peers.

Python library for extracting Indicators of Compromise, URLs, IP addresses, hashes, and email addresses from text using declarative grammars instead…

Universal mobile devtool for Agents & Humans - control iOS Simulators, Android Emulators, and real devices from a single dashboard and CLI

Generate firewall ACLs for Cisco, Juniper, Palo Alto, and more from a single YAML policy language via CLI or Python API.

SQLite VFS with sub-100ms cold JOIN queries from S3 + page-level compression and encryption

Exports disassembly from IDA Pro, Ghidra, and Binary Ninja into compact protobuf files for fast, standalone binary analysis and program manipulation…

Browser extension to export Telegram chat history as text, including messages from deleted accounts, with configurable output and date formats.

Generate a RSA PEM key pair from pure JS

Executes arbitrary ELF binaries directly from memory on Linux without touching disk, enabling stealthy red-teaming and anti-forensic operations via a…

A fast tool to fetch URLs from HTML attributes by crawl-in.

Extract labels from IDA, Ghidra, Binary Ninja, and Relyze files and export x64dbg database. Including radare2 main address.

Extract indicators of compromise from text, including "escaped" ones.