si9int's Stars
danielmiessler/SecLists
SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.
sqlmapproject/sqlmap
Automatic SQL injection and database takeover tool
maurosoria/dirsearch
Web path scanner
s0md3v/Photon
Incredibly fast crawler designed for OSINT.
wpscanteam/wpscan
WPScan WordPress security scanner. Written for security professionals and blog maintainers to test the security of their WordPress websites. Contact us via contact@wpscan.com
drwetter/testssl.sh
Testing TLS/SSL encryption anywhere on any port
EdOverflow/can-i-take-over-xyz
"Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.
GerbenJavado/LinkFinder
A python script that finds endpoints in JavaScript files
b374k/b374k
PHP Webshell with handy features
haccer/subjack
Subdomain Takeover tool written in Go
lijiejie/ds_store_exp
A .DS_Store file disclosure exploit. It parses .DS_Store file and downloads files recursively.
FLOCK4H/Freeway
WiFi Penetration Testing & Auditing Tool