Pinned Repositories
DET
(extensible) Data Exfiltration Toolkit (DET)
godoh
🕳 godoh - A DNS-over-HTTPS C2
gowitness
🔍 gowitness - a golang, web screenshot utility using Chrome Headless
hostapd-mana
SensePost's modified hostapd for wifi attacks.
kwetza
Python script to inject existing Android applications with a Meterpreter payload.
mallet
Mallet is an intercepting proxy for arbitrary protocols
mana
*DEPRECATED* mana toolkit for wifi rogue AP attacks and MitM
objection
📱 objection - runtime mobile exploration
reGeorg
The successor to reDuh, pwn a bastion webserver and create SOCKS proxies through the DMZ. Pivot and pwn.
ruler
A tool to abuse Exchange services
SensePost's Repositories
sensepost/objection
📱 objection - runtime mobile exploration
sensepost/gowitness
🔍 gowitness - a golang, web screenshot utility using Chrome Headless
sensepost/ruler
A tool to abuse Exchange services
sensepost/godoh
🕳 godoh - A DNS-over-HTTPS C2
sensepost/kwetza
Python script to inject existing Android applications with a Meterpreter payload.
sensepost/hostapd-mana
SensePost's modified hostapd for wifi attacks.
sensepost/Frack
Frack - Keep and Maintain your breach data
sensepost/wiresocks
A sock, with a wire, so you can tunnel all you desire.
sensepost/mallet
Mallet is an intercepting proxy for arbitrary protocols
sensepost/berate_ap
Script for orchestrating mana rogue WiFi Access Points.
sensepost/UserEnum
Domain user enumeration tool
sensepost/wpa_sycophant
Evil client portion of EAP relay attack
sensepost/assless-chaps
Crack MSCHAPv2 challenge/responses quickly using a database of NT hashes
sensepost/go-out
☄️ go-out - A Golang egress buster.
sensepost/susinternals
psexecsvc - a python implementation of PSExec's native service implementation
sensepost/mydumbedr
sensepost/mail-in-the-middle
sensepost/apostille
sensepost/hash-cracker
Script to perform some hashcracking logic automagically
sensepost/punch-q
👊 A small utility to play with IBM MQ
sensepost/thumbscr-ews
Exchangelib wrapper for pentesting
sensepost/steampipe-plugin-projectdiscovery
A steampipe plugin to query projectdiscovery.io tools.
sensepost/cipherchecks
visually see issues with supported cipher suites
sensepost/dresscode
sensepost/berate_radius
Alpine hostapd-mana based RADIUS server
sensepost/hash-cracker-apple-silicon
Script to perform some hashcracking logic automagically
sensepost/InvokeADCheck
InvokeADCheck is a PowerShell module designed to evaluate the security of Active Directory environments.
sensepost/file-read-experiments
A few short scripts to look at the performance of various file read strategies.
sensepost/arbitrary-object-instantiation
A PHP, Arbitrary Object Instantiation Lab
sensepost/beacon-pipe-frame-proxy
A toy, C# Cobalt Strike Beacon TCP to Named Pipe Frame Proxy