LegendaryVasya's Stars
ReFirmLabs/binwalk
Firmware Analysis Tool
DominicBreuker/pspy
Monitor linux processes without root permissions
arthaud/git-dumper
A tool to dump a git repository from a website
SpiderLabs/Responder
Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv2/LMv2, Extended Security NTLMSSP and Basic HTTP authentication.
carlospolop/Auto_Wordlists
Hackplayers/evil-winrm
The ultimate WinRM shell for hacking/pentesting
samratashok/nishang
Nishang - Offensive PowerShell for red team, penetration testing and offensive security.
rebootuser/LinEnum
Scripted Local Linux Enumeration & Privilege Escalation Checks
digininja/CeWL
CeWL is a Custom Word List Generator
trailofbits/onesixtyone
Fast SNMP Scanner
urbanadventurer/WhatWeb
Next generation web scanner
EnableSecurity/wafw00f
WAFW00F allows one to identify and fingerprint Web Application Firewall (WAF) products protecting a website.
laramies/theHarvester
E-mails, subdomains and names Harvester - OSINT
tmux/tmux
tmux source code
GhostManager/Ghostwriter
The SpecterOps project management and reporting engine
pwndoc/pwndoc
Pentest Report Generator
jtesta/ssh-audit
SSH server & client security auditing (banner, key exchange, encryption, mac, compression, compatibility, security, etc)
fortra/impacket
Impacket is a collection of Python classes for working with network protocols.
0xZ0F/Z0FCourse_ReverseEngineering
Reverse engineering focusing on x64 Windows.
ReversingID/Awesome-Reversing
A curated list of awesome reverse engineering resources for various topics
FiloSottile/mkcert
A simple zero-config tool to make locally trusted development certificates with any names you'd like.
boomcamp/django-security
Cover's the top 10 "OWASP" security principle
stevencohn/OneMore
A OneNote add-in with simple, yet powerful and useful features
cr-0w/maldev
⚠️ malware development
OWASP/wstg
The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.
rapid7/metasploit-framework
Metasploit Framework
swisskyrepo/PayloadsAllTheThings
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
center-for-threat-informed-defense/adversary_emulation_library
An open library of adversary emulation plans designed to empower organizations to test their defenses based on real-world TTPs.
Hack-with-Github/Awesome-Hacking
A collection of various awesome lists for hackers, pentesters and security researchers
fuzzdb-project/fuzzdb
Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.