
Medusa
🐈Medusa是一个红队武器库平台,目前包括XSS平台、协同平台、CVE监控、免杀生成、DNSLOG、钓鱼邮件、文件获取等功能,持续开发中

🐈Medusa是一个红队武器库平台,目前包括XSS平台、协同平台、CVE监控、免杀生成、DNSLOG、钓鱼邮件、文件获取等功能,持续开发中

GyoiThon is a growing penetration test tool using Machine Learning.

Malicious HTTP traffic explorer

Offensive security platform that automates attack surface discovery and vulnerability management

Vulnerability scanner based on vulners.com search API

POC-T强化版本 POC-S , 用于红蓝对抗中快速验证Web应用漏洞, 对功能进行强化以及脚本进行分类添加,自带dnslog等, 平台补充来自vulhub靶机及其他开源项目的高可用POC

Pentesting suite for Maltego based on data in a Metasploit database

The purpose of this script is to automate the web enumeration process and search for exploits

A free and open source command-line shell and scripting language designed especially for security testing

A cross-platform C2/teamserver supporting multiple transport protocols, written in Go.

Plugin For BurpSuite (Pentester)

PAKURI-THON is a tool that supports pentesters with various pentesting tools and C4 server (command & control and chat & communication server).…

Template repository for Faraday security platform, providing reusable vulnerability scanning and exploitation templates for automated penetration…

WordPress Core Unauthenticated RCE (CVE-2026-63030, CVE-2026-60137)

Metasploit Auxiliary module for scanning and detecting CVE-2020-0796 (SMBGhost) vulnerability in Windows SMBv3 implementations.

MagicArch is a comprehensive post-installation script built with Ansible, designed to transform a basic Arch Linux installation into a fully equipped…

Orchestration component of purpleteam

Open-source pentesting management and automation platform by Salesforce Product Security