GitHub topics: pentesting-tool
cytopia/pwncat
pwncat - netcat on steroids with Firewall, IDS/IPS evasion, bind and reverse shell, self-injecting shell and port forwarding magic - and its fully scriptable with Python (PSE)
Language: Shell - Size: 6.2 MB - Last synced at: 4 days ago - Pushed at: over 2 years ago - Stars: 1,860 - Forks: 216

Syslifters/sysreptor
A customizable and powerful penetration testing reporting platform for offensive security professionals. Simplify, customize, and automate your pentest reports with ease.
Language: Python - Size: 126 MB - Last synced at: 5 days ago - Pushed at: 5 days ago - Stars: 1,871 - Forks: 181

TheBugFather/Pentester-Toolchain
Pentester Toolchain is a penetration testing dynamic templating system used to automate toolchains on mutiple hosts
Language: Python - Size: 1010 KB - Last synced at: 1 day ago - Pushed at: about 1 year ago - Stars: 1 - Forks: 0

epi052/feroxbuster
A fast, simple, recursive content discovery tool written in Rust.
Language: Rust - Size: 22.3 MB - Last synced at: 5 days ago - Pushed at: about 1 month ago - Stars: 6,464 - Forks: 528

dilan1001/iis_gen
iis_gen.sh - IIS Tilde Enumeration Dictionary Generator - A specialized bash tool for creating wordlists specifically designed to exploit the IIS tilde enumeration vulnerability. It generates optimized dictionaries for guessing hidden files and directories by leveraging the short-name (8.3) disclosure technique in vulnerable IIS servers.
Language: Shell - Size: 20.5 KB - Last synced at: 6 days ago - Pushed at: 6 days ago - Stars: 0 - Forks: 0

eredotpkfr/subscan
⚡ A subdomain enumeration tool leveraging diverse techniques, designed for advanced pentesting operations
Language: Rust - Size: 7.66 MB - Last synced at: 4 days ago - Pushed at: 5 days ago - Stars: 39 - Forks: 2

ZishanAdThandar/WriteUps
CTF and Bug Bounty Hunting WriteUps.
Language: HTML - Size: 1.99 MB - Last synced at: 10 days ago - Pushed at: 10 days ago - Stars: 19 - Forks: 3

nickvourd/Responder-Parser
Most Responder's configuration power in your hand.
Language: Python - Size: 359 KB - Last synced at: 4 days ago - Pushed at: 4 months ago - Stars: 48 - Forks: 8

pwndoc/pwndoc
Pentest Report Generator
Language: JavaScript - Size: 11.9 MB - Last synced at: 18 days ago - Pushed at: 18 days ago - Stars: 2,494 - Forks: 454

Fatake/MyHackingPath
Gitbook of My Personal Pentesting Hacking Path
Size: 44.4 MB - Last synced at: about 1 month ago - Pushed at: about 1 month ago - Stars: 2 - Forks: 1

nemmusu/iis_gen
iis_gen.sh - IIS Tilde Enumeration Dictionary Generator - A specialized bash tool for creating wordlists specifically designed to exploit the IIS tilde enumeration vulnerability. It generates optimized dictionaries for guessing hidden files and directories by leveraging the short-name (8.3) disclosure technique in vulnerable IIS servers.
Language: Shell - Size: 0 Bytes - Last synced at: about 1 month ago - Pushed at: about 1 month ago - Stars: 0 - Forks: 0

MuhammadMuazen/thagarat
Thagarat (ثغرات) which literally means (vulnerabilities) in Arabic is a simple rust automation tool for the CVE DB Shodan API
Language: Rust - Size: 5.87 MB - Last synced at: 29 days ago - Pushed at: about 1 month ago - Stars: 2 - Forks: 0

Adilmunawar/Vulnerability-Scanner
Python-based scanner for web and network vulnerabilities.
Language: Python - Size: 17.6 KB - Last synced at: about 1 month ago - Pushed at: about 1 month ago - Stars: 1 - Forks: 1

dub-flow/sessionprobe
SessionProbe is a multi-threaded tool designed for penetration testing and bug bounty hunting. It evaluates user privileges in web applications by taking a session token and checking access across a list of URLs, highlighting potential authorization issues.
Language: Go - Size: 175 KB - Last synced at: about 1 month ago - Pushed at: about 1 year ago - Stars: 447 - Forks: 37

livepwn/liveexploit
Live Exploit is a powerful and versatile Python-based tool designed for Capture The Flag (CTF) challenges, exploit development, and vulnerability research.
Language: Python - Size: 41 KB - Last synced at: about 1 month ago - Pushed at: 2 months ago - Stars: 6 - Forks: 1

RootShelll/Kumasia-PHP-Shell
Kumasia is a simple PHP backdoor tool designed for penetration testing, offering functionalities like webshell access, file upload, command execution, and more.
Language: PHP - Size: 74.2 KB - Last synced at: about 1 month ago - Pushed at: 2 months ago - Stars: 0 - Forks: 1

Abhinandan-Khurana/go-check-http-methods
A powerful, fast, and lightweight Go tool for testing HTTP method security across web applications and servers. Detect HTTP Verb Tampering vulnerabilities, dangerous methods, and server misconfigurations with ease.
Language: Go - Size: 28.2 MB - Last synced at: about 2 months ago - Pushed at: 2 months ago - Stars: 1 - Forks: 0

Ego023/LogonScriptsScanner
Tool designed to detect Logon Scripts that could lead to Lateral Windows Movement
Size: 1000 Bytes - Last synced at: 2 months ago - Pushed at: 2 months ago - Stars: 0 - Forks: 0

swagkarna/Hande-Stealer
Powerful Discord Stealer written in python
Language: Python - Size: 182 KB - Last synced at: about 1 month ago - Pushed at: about 2 years ago - Stars: 102 - Forks: 22

gunzf0x/LogonScriptsScanner
Tool designed to detect Logon Scripts that could lead to Lateral Windows Movement
Language: Shell - Size: 256 KB - Last synced at: 3 months ago - Pushed at: 3 months ago - Stars: 0 - Forks: 0

ObsidianStrike/YARF
Yet Another Recon Framework🥷⚔️
Language: Shell - Size: 28.3 KB - Last synced at: 4 months ago - Pushed at: 4 months ago - Stars: 0 - Forks: 0

3skue/xAPI4
A Powerful Pentesting and Debugging Tool for Roblox
Size: 8.8 MB - Last synced at: 4 months ago - Pushed at: 4 months ago - Stars: 13 - Forks: 2

Koinsec/copycat
Copycat tool is for recreating websites from front end top to bottom for phishing attacks
Language: Python - Size: 4.88 KB - Last synced at: 6 months ago - Pushed at: 6 months ago - Stars: 1 - Forks: 0

eliaz5536/DirAuto
Directory Reconnaissance tool for automating enumeration of subdomains for network scanning.
Language: Shell - Size: 201 KB - Last synced at: 3 months ago - Pushed at: 11 months ago - Stars: 0 - Forks: 1

batchmcnulty/uberscan2
The all-new Python version of Uberscan! Security program for recovering passwords and pen-testing servers, routers and IoT devices using brute-force password attacks.
Language: Python - Size: 87.9 KB - Last synced at: 8 months ago - Pushed at: 8 months ago - Stars: 0 - Forks: 0

evanricafort/lazymap
NMAP equipped network penetration testing tool for the lazy peeps.
Language: Shell - Size: 88.9 KB - Last synced at: 8 months ago - Pushed at: 8 months ago - Stars: 1 - Forks: 1

1hehaq/3PleB
Bash script intended for setting up a penetration testing and bug bounty hunting environment. No more bloatware.
Language: Shell - Size: 50.8 KB - Last synced at: 9 months ago - Pushed at: 9 months ago - Stars: 1 - Forks: 0

barra-dev0/Barracuda
barracuda is a denial of service tool to test the robustness of a website. 📡
Language: Python - Size: 276 KB - Last synced at: 9 months ago - Pushed at: 9 months ago - Stars: 2 - Forks: 0

qorri-di/Pentesting-Tools
Pentesting Tools
Size: 61.5 KB - Last synced at: about 1 month ago - Pushed at: 9 months ago - Stars: 0 - Forks: 0

maxwell400/pathcurse
Path segment finder
Language: Python - Size: 9.77 KB - Last synced at: 9 months ago - Pushed at: 9 months ago - Stars: 0 - Forks: 0

Ponk445/PDF-EXPLOIT
FUD PDF EXPLOIT SOURCE CODE, reverse shell using pdf file
Language: Python - Size: 213 KB - Last synced at: 10 months ago - Pushed at: 10 months ago - Stars: 14 - Forks: 2

oMaster120o/RedSun-Project 📦
An Keylogger Auxiliary tool created to target unprotected Linux devices. Which might be used by Pentesters and Red Team Operators.
Language: C - Size: 10.7 KB - Last synced at: 11 months ago - Pushed at: 11 months ago - Stars: 0 - Forks: 0

unlock-security/sqlmapsh
SQLMap wrapper that lets you use Interact.sh as a DNS server for exfiltrating data with zero configuration
Language: Go - Size: 60.5 KB - Last synced at: 11 months ago - Pushed at: over 2 years ago - Stars: 30 - Forks: 3

Conjured-Security/Antimatter
Report writing and vulnerability management platform.
Language: JavaScript - Size: 2.06 MB - Last synced at: 11 months ago - Pushed at: 11 months ago - Stars: 2 - Forks: 1

pwndoc-ng/pwndoc-ng
Pentest Report Generator
Language: JavaScript - Size: 15.3 MB - Last synced at: 12 months ago - Pushed at: 12 months ago - Stars: 313 - Forks: 72

juanga333/RDP-hook-stealer
A DLL injection of RdpThief.dll to perform API hooking and extract RDP credentials
Language: C++ - Size: 102 KB - Last synced at: 12 months ago - Pushed at: 12 months ago - Stars: 0 - Forks: 0

juanga333/DHCP-Server
A DHCP rogue server using scapy
Language: Python - Size: 55.7 KB - Last synced at: 12 months ago - Pushed at: almost 4 years ago - Stars: 0 - Forks: 0

juanga333/Netattack
A wifi pentesting tool using scapy
Language: Python - Size: 39.1 KB - Last synced at: 12 months ago - Pushed at: almost 4 years ago - Stars: 0 - Forks: 0

juanga333/DNS-Rogue-Server
A DNS rogue server using scapy
Language: Python - Size: 34.2 KB - Last synced at: 12 months ago - Pushed at: almost 4 years ago - Stars: 0 - Forks: 0

brows3r/iPwn
A Framework meant for the exploitation of iOS devices.
Language: Python - Size: 277 KB - Last synced at: 12 months ago - Pushed at: almost 4 years ago - Stars: 169 - Forks: 28

PeCoReT/pecoret
A Pentest Collaboration and Reporting Tool
Language: Python - Size: 5 MB - Last synced at: about 1 year ago - Pushed at: about 1 year ago - Stars: 30 - Forks: 2

txuswashere/Web-Pentesting
Web Pentesting
Size: 174 KB - Last synced at: about 2 months ago - Pushed at: about 1 year ago - Stars: 3 - Forks: 1

rootcathacking/catspin
Catspin rotates the IP address of HTTP requests making IP based blocks or slowdown measures ineffective. It is based on AWS API Gateway and deployed via AWS Cloudformation.
Language: Shell - Size: 70.1 MB - Last synced at: about 1 year ago - Pushed at: about 1 year ago - Stars: 248 - Forks: 32

txuswashere/Pentesting-Linux
Pentesting Linux
Size: 31.3 KB - Last synced at: about 2 months ago - Pushed at: about 1 year ago - Stars: 2 - Forks: 0

sudobyter-hub/Pentesting0x
A premier resource for pentesting professionals and enthusiasts. Explore top-tier tutorials, tools, and guides designed to sharpen your skills and advance your cybersecurity knowledge.
Size: 4.02 MB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 6 - Forks: 0

aodatacloud/hydra
Herramienta para realizar ataques de diccionario y fuerza bruta.
Size: 2.93 KB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 0 - Forks: 0

CyberCommands/Netcat
Language: Python - Size: 2.93 KB - Last synced at: over 1 year ago - Pushed at: about 4 years ago - Stars: 1 - Forks: 1

rndinfosecguy/yal4ss
yet another log4shell scanner
Language: Python - Size: 6.84 KB - Last synced at: over 1 year ago - Pushed at: over 3 years ago - Stars: 6 - Forks: 0

raracraz/Privilage-Escalation-Handbook
Privilage Escalation Paths to lookout for.
Size: 78.1 KB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 2 - Forks: 1

Ud0g-Py/Make-It-Burn
Colección de herramientas y scripts enfocados al Red-Team y CTFs
Language: C - Size: 364 MB - Last synced at: over 1 year ago - Pushed at: over 3 years ago - Stars: 1 - Forks: 0

iss4cf0ng/Alien
Webshell Manager Tool/一句話木馬管理工具/Trojan/Backdoor/Pentest
Size: 1.9 MB - Last synced at: over 1 year ago - Pushed at: almost 2 years ago - Stars: 50 - Forks: 9

Pulsar7/port_scanner
A simple port scanner in Java.
Language: Java - Size: 9.77 KB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 0 - Forks: 0

NutekSecurity/nutek-fedsec
Nutek Terminal in Fedora. Look for macOS version in nutek-apple repo.
Language: Dockerfile - Size: 9.77 KB - Last synced at: about 1 year ago - Pushed at: almost 2 years ago - Stars: 0 - Forks: 0

0xd3d5ec/brave-security-toolkit
A tool that transforms Brave browser into a penetration testing suite. Take note this tool could also work with other chrome based browsers.
Language: Shell - Size: 35.2 KB - Last synced at: almost 2 years ago - Pushed at: almost 2 years ago - Stars: 0 - Forks: 0

0v3rride/Enum4LinuxPy
Everyone's favorite SMB/SAMBA/CIFS enumeration tool ported over to Python.
Language: Python - Size: 108 KB - Last synced at: almost 2 years ago - Pushed at: over 3 years ago - Stars: 82 - Forks: 10

Crypt0s/Telekino
Deploys a Raspberry Pi CM4 image for use as a remote network access device in enterprise network security testing engagements
Language: Shell - Size: 54.9 MB - Last synced at: almost 2 years ago - Pushed at: about 2 years ago - Stars: 0 - Forks: 0

KristianP14/ProxyDoS
a python DoS (denial-of-service) tool that uses proxies to anonymize your attack
Language: Python - Size: 1000 Bytes - Last synced at: about 2 years ago - Pushed at: almost 4 years ago - Stars: 6 - Forks: 1

xzendercage/cageframework
CAGE Framwork Hacking Tools Pack – A Penetration Testing Framework
Language: Python - Size: 55.7 KB - Last synced at: about 2 years ago - Pushed at: about 2 years ago - Stars: 3 - Forks: 0

pentagridsec/PentagridResponseOverview
Response Overview Extension for BurpSuite
Language: Kotlin - Size: 6.43 MB - Last synced at: about 2 years ago - Pushed at: over 2 years ago - Stars: 10 - Forks: 5

pentagridsec/PentagridScanController
Improve automated and semi-automated active scanning in Burp Pro
Language: Kotlin - Size: 5.17 MB - Last synced at: about 2 years ago - Pushed at: almost 3 years ago - Stars: 50 - Forks: 3

pentagridsec/PentagridBurpTransportEncoding
Burp Suite extensions if you want to teach Burp a new Transport-Encoding
Language: Python - Size: 275 KB - Last synced at: about 2 years ago - Pushed at: about 3 years ago - Stars: 7 - Forks: 3

CoconutMacaroon/ipscan
Scan a network for IP addresses that have hostnames
Language: Python - Size: 37.1 KB - Last synced at: about 2 years ago - Pushed at: over 3 years ago - Stars: 6 - Forks: 2

cyberaz0r/badmoodle
Moodle community-based vulnerability scanner
Language: Python - Size: 326 KB - Last synced at: almost 2 years ago - Pushed at: almost 3 years ago - Stars: 15 - Forks: 3

0x1CA3/bind
A bind-shell written in C.
Language: C - Size: 10.7 KB - Last synced at: about 2 years ago - Pushed at: over 3 years ago - Stars: 6 - Forks: 2

brows3r/AutoEnum
An enumeration tool for post exploitation that you can use to gather information about your target machine and its network.
Language: C - Size: 25.4 KB - Last synced at: about 2 years ago - Pushed at: almost 4 years ago - Stars: 10 - Forks: 3

aress31/corellium-utils
A collection of utility scripts leveraging the Corellium API and designed to facilitate mobile pentesting.
Language: JavaScript - Size: 19.5 KB - Last synced at: about 2 months ago - Pushed at: over 2 years ago - Stars: 3 - Forks: 0

digitaldisarray/HTTPAuthChecker
An HTTP authentication checker for testing security on web pages/routers secured with basic authentication. Made in 7th grade.
Language: Java - Size: 217 KB - Last synced at: about 2 years ago - Pushed at: almost 5 years ago - Stars: 2 - Forks: 0

xozxro/NotesToCommands
NotesToCommands is a powerful command template experience, allowing users to instantly execute terminal commands, with varying arguments, grouped into sections in a note or file. It was originally created for pentesting uses, to avoid the needed remembrance and retyping of sets of commands for various attacks.
Language: Python - Size: 26.4 KB - Last synced at: almost 2 years ago - Pushed at: over 2 years ago - Stars: 5 - Forks: 0
