
pentest-pivoting
A compact guide to network pivoting for penetration testings / CTF challenges.

A compact guide to network pivoting for penetration testings / CTF challenges.

Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv2/LMv2,…

Automates phishing and post-phishing activities with an almost-transparent reverse proxy that dynamically mirrors target web apps and interacts with…

Interactive web server for inspecting HTTP requests and forging responses, with a terminal UI for real-time debugging and API testing.

💫 Ngrok FRP Alternative • ⚡ Fast • 🪶 Lightweight • 0️⃣ Dependency • 🔌 Pluggable • 😈 TLS interception • 🔒 DNS-over-HTTPS • 🔥 Poor Man's VPN • ⏪…


Transparent proxy server that works as a poor man's VPN. Forwards over ssh. Doesn't require admin. Works with Linux and MacOS. Supports DNS…

Application for capturing, modifying and sending custom WebSocket data from client to server and vice versa.

CoWitness is a powerful web application testing tool that enhances the accuracy and efficiency of your testing efforts. It allows you to mimic an…

a dart package to analyze CVE-2025-55182 react2shell

A library for integrating communication channels with the Cobalt Strike External C2 server

Remote Administration Toolkit (or Trojan) for POSiX (Linux/Unix) system working as a Web Service

Monitor arbitrary TCP traffic using your HTTP interception proxy of choice

HTTP proxy bridge for security testing of remote MCP servers, allowing standard HTTP tools to send JSON-RPC messages and manage sessions.

BLE-based HTTP proxy system routing browser traffic through an iOS device. Supports HTTP/HTTPS, data compression, and mock mode for testing without…

Datajack Proxy allows you to intercept TLS traffic in native x86 applications across platforms

Generate Caddy redirector configs from Cobalt Strike or Sliver C2 profiles.

AIO Cloud Managment Server