
gallia
Extendable pentesting framework for automotive UDS interfaces, enabling reproducible scans, diagnostic trouble code reading, and post-processing via…

Extendable pentesting framework for automotive UDS interfaces, enabling reproducible scans, diagnostic trouble code reading, and post-processing via…

A Python package is used to execute Atomic Red Team tests (Atomics) across multiple operating system environments.

GitPwnd is a network penetration tool that lets you use a git repo for command and control of compromised machines

This aggressor script uses a beacon's note field to indicate the health status of a beacon.

YAML-driven framework for testing Web Application Firewall (WAF) rules using OWASP Core Rule Set baselines. Automates regression detection and…

A free and open source command-line shell and scripting language designed especially for security testing

Automated CORS misconfiguration scanner that tests Origin header injection, wildcard reflection, and credential leakage across web applications and…

An SDN penetration testing toolkit

Unit tests for blue teams to aid with building detections for some common macOS post exploitation methods.

Python library for Turbo Intruder that adds payload position support and Sniper/Clusterbomb/Pitchfork attack types with tag-based test generation for…

Unified network toolkit for Linux — Python 3 + PySide6

This C# tool sprays for admin access over the entire domain

SSLScan tests SSL/TLS enabled services to discover supported cipher suites

Automated penetration testing framework for REST APIs with OpenAPI-driven test generation, 32 OWASP-based security tests, and built-in access control…

Ansible-based attack platform for deploying and managing a standardized Linux penetration testing environment with automated tool installation,…

Bento Toolkit is a minimal fedora-based container for penetration tests and CTF with the sweet addition of GUI applications.

RedHerd is a collaborative and serverless framework for orchestrating a geographically distributed group of assets.

PoC exploit for CVE-2015-5477 BIND9 TKEY assertion failure