Sumner072's Stars
danielmiessler/SecLists
SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.
robertdavidgraham/masscan
TCP port scanner, spews SYN packets asynchronously, scanning entire Internet in under 5 minutes.
peass-ng/PEASS-ng
PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)
vitalysim/Awesome-Hacking-Resources
A collection of hacking / penetration testing resources to make you better!
zaproxy/zaproxy
The ZAP by Checkmarx Core project
owasp-amass/amass
In-depth attack surface mapping and asset discovery
gophish/gophish
Open-Source Phishing Toolkit
ytisf/theZoo
A repository of LIVE malwares for your own joy and pleasure. theZoo is a project created to make the possibility of malware analysis open and available to the public.
redcanaryco/atomic-red-team
Small and highly portable detection tests based on MITRE's ATT&CK.
samratashok/nishang
Nishang - Offensive PowerShell for red team, penetration testing and offensive security.
byt3bl33d3r/CrackMapExec
A swiss army knife for pentesting networks
LOLBAS-Project/LOLBAS
Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)
michenriksen/gitrob
Reconnaissance tool for GitHub organizations
trustedsec/ptf
The Penetration Testers Framework (PTF) is a way for modular support for up-to-date tools.
RedSiege/EyeWitness
EyeWitness is designed to take screenshots of websites, provide some server header info, and identify default credentials if possible.
clong/DetectionLab
Automate the creation of a lab environment complete with security tooling and logging best practices
PowerShellEmpire/PowerTools
PowerTools is a collection of PowerShell projects with a focus on offensive operations.
lmammino/jwt-cracker
Simple HS256, HS384 & HS512 JWT token brute force cracker.
vanhauser-thc/thc-ipv6
IPv6 attack toolkit
omriher/CapTipper
Malicious HTTP traffic explorer
breenmachine/httpscreenshot
mdsecactivebreach/LinkedInt
LinkedInt: A LinkedIn scraper for reconnaissance during adversary simulation
Varbaek/xsser
From XSS to RCE 2.75 - Black Hat Europe Arsenal 2017 + Extras
JPCERTCC/ToolAnalysisResultSheet
Tool Analysis Result Sheet
cheetz/sslScrape
SSLScrape | A scanning tool for scaping hostnames from SSL certificates.
chuckfw/owaspbwa
OWASP Broken Web Applications Project
cheetz/Easy-P
PowerShell Helper Tool
cheetz/brutescrape
A web scraper for generating password files based on plain text found
cheetz/reddit_xss
Reddit XSS Gather Tool
datdamnzotz/FoundryVTT-Game-Audio-Bundle-4
Foundry VTT - Game Audio Bundle 4