gymR4T's Stars
dev-2null/ADCollector
A lightweight tool to quickly extract valuable information from the Active Directory environment for both attacking and defending.
NotSoSecure/Blacklist3r
project-blacklist3r
LeanKit-Labs/aspxauth
Verify and decrypt .NET's .ASPXAUTH cookie from node.
s0md3v/MyPapers
Repository for hosting my research papers
0xbharath/hardware-hacking-for-software-folks
dagrz/aws_pwn
A collection of AWS penetration testing junk
mxm0z/awesome-sec-s3
A collection of awesome AWS S3 tools that collects and enumerates exposed S3 buckets
evilpenguin/SSLBypass
iOS SSL Pinning Bypass (iOS 8 - 14)
digininja/CeWL
CeWL is a Custom Word List Generator
epinna/weevely3
Weaponized web shell
mogwailabs/mjet
MOGWAI LABS JMX exploitation toolkit
brendan-rius/c-jwt-cracker
JWT brute force cracker written in C
honze-net/nmap-bootstrap-xsl
A Nmap XSL implementation with Bootstrap.
vavkamil/xss2png
PNG IDAT chunks XSS payload generator
ScorpionesLabs/DVS
D(COM) V(ulnerability) S(canner) AKA Devious swiss army knife - Lateral movement using DCOM Objects
MS-WEB-BN/c41n
Automated rogue access point setup tool.
bettercap/bettercap
The Swiss Army knife for 802.11, BLE, HID, CAN-bus, IPv4 and IPv6 networks reconnaissance and MITM attacks.
jakev/mitm-helper-wifi
WiFi MITM Helper
RhinoSecurityLabs/AWS-IAM-Privilege-Escalation
A centralized source of all AWS IAM privilege escalation methods released by Rhino Security Labs.
RhinoSecurityLabs/GCP-IAM-Privilege-Escalation
A collection of GCP IAM privilege escalation methods documented by the Rhino Security Labs team.
MobSF/Mobile-Security-Framework-MobSF
Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.
jakev/android-tools
Tools to help with Android assessments and forensics
0xricksanchez/paper_collection
Academic papers related to fuzzing, binary analysis, and exploit dev, which I want to read or have already read
vysecurity/Aggressor-VYSEC
frostbits-security/SIET
Smart Install Exploitation Tool
checkymander/Zolom
C# Executable with embedded Python that can be used reflectively to run python code on systems without Python installed
netwrix/pingcastle
PingCastle - Get Active Directory Security at 80% in 20% of the time
johndekroon/serializekiller
Mass scanner for the Java serialize bug
dirkjanm/BloodHound-AzureAD
BloodHound with a twist of cloud
NetSPI/MicroBurst
A collection of scripts for assessing Microsoft Azure security