This is your work, valued
Offensive Security: Information Security Solutions, Digital Forensics, Offensive Security Courses, Content Production, and Bug Bounty Hunting!
DDoSlayer. An Advanced Layer 7 DDoS tool, Able to bypass CF and offers various DoS Techniques
448TerminatorZ. TerminatorZ is a highly sophisticated and efficient Offensive CVE Exploitation Framework that scans for top potential vulnerabilities with known CVEs in your web applications.
333Bug_Bounty_Tools_and_Methodology. Bug Bounty Tools used on Twitch - Recon
327Nucleimonst3r. Nucleimonst3r is a powerful vulnerability scanner that can help Bug Bounty Hunters find low hanging fruit vulnerabilities for known CVEs and exploits but also gather all the technology running behind them for further investigation for a potential target.
263SecretOpt1c. SecretOpt1c is a Red Team tool that helps uncover sensitive information in websites using ACTIVE and PASSIVE Techniques for Superior Accuracy!
249XSSRocket. XSSRocket it is a tool designed for offensive security and XSS (Cross-Site Scripting) attacks.
168SQLMutant. SQLMutant is a powerful SQL injection testing tool that includes both passive and active reconnaissance processes for any given domain. It filters URLs to identify those with parameters susceptible to SQL injection formats and then performs injection attacks. These attacks include pattern matching, error analysis, and timing attacks.
163SSRFPwned. Checks for SSRF using built-in custom Payloads after fetching URLs from Multiple Passive Sources & applying complex patterns aimed at SSRF
133ScopeHunter. ScopeHunter is a command-line tool for finding in scope targets for bug bounty programs.
77fetchmeurls. A Tool for Bug Bounty Hunters that uses Passive and Active Techniques to fetch URLs as a strong Recon, so you can then create Attack Vectors (XSS, Nuclei, SQLi etc...)
76AdminPBuster. AdminPBuster identifies hidden admin panels for any domain using a built-in wordlist that includes both common and obscure paths, effectively bypassing WAFs.
59pacu. The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.
49OpenRediWrecked. A powerful and sophisticated tool for detecting and exploiting open redirect vulnerabilities using the sed utility and a selected list of carefully crafted payloads with encoding techniques.
47s3-buckets-aio-pwn. An AIO Tool to check for Vulnerable Amazon S3 Buckets as part of Bug Bounty, the uniqueness of this tool is that it can take a file full of buckets, and check all of them with various attack scenarios if they are vulnerable
46Pentest-Tools.
43SQL-INJECTION-PWN. A 1 Liner SQL Injection Attack using SQLMAP and various parameters that helps quickly check for a vulnerabilities during Bug Bounty
42OWASP-Nettacker. Automated Penetration Testing Framework
35malicious-pdf. 💀 Generate a bunch of malicious pdf files with phone-home functionality. Can be used with Burp Collaborator or Interact.sh
33Dorks-collections-list. List of Github repositories and articles with list of dorks for different search engines
33bf_active_sub. Subdomain Bruteforce - Bounty Quick Code
32BlackWidow. A Python based web application scanner to gather OSINT and fuzz for OWASP vulnerabilities on a target website.
31HiddenEye. Modern Phishing Tool With Advanced Functionality [ Android-Support-Available ]
31CMSeeK. CMS Detection and Exploitation suite - Scan WordPress, Joomla, Drupal and over 170 other CMSs
30CloudFail. Utilize misconfigured DNS and old database records to find hidden IP's behind the CloudFlare network
28ctfr. Abusing Certificate Transparency logs for getting HTTPS websites subdomains.
28bheh-sub-pwner. This bash script tool, will perform advanced subdomain enumeration, save the results, it will then probe the subdomains into urls, save the results in a separate file, it will then resolve all the subdomains into ip addresses and save the results separately.
27Dr0p1t-Framework. A framework that create an advanced stealthy dropper that bypass most AVs and have a lot of tricks
27log4j-scan. A fully automated, accurate, and extensive scanner for finding log4j RCE CVE-2021-44228
25Osintgram. Osintgram is a OSINT tool on Instagram. It offers an interactive shell to perform analysis on Instagram account of any users by its nickname
25mosint. An automated e-mail OSINT tool
24linkedin_scraper. A library that scrapes Linkedin for user data
24blackhatethicalhacking. Who We Are
23Burp-Suite-Pro. A bash and powershell script to download the latest version of Burp-Suite Professional and use it for free.
22androrat. androrat
22BHEH_PHP_SHELL. Black Hat Ethical Hacking | PHP Backdoor Shell v1.0
21InstagramOSINT. An Instagram Open Source Intelligence Tool
21shad0w. A post exploitation framework designed to operate covertly on heavily monitored environments
21sniffer. VoIPmonitor sniffer sources
20blackbird. An OSINT tool to search for accounts by username in social networks.
19wifijammer. Continuously jam all wifi clients/routers
19awesome-bugbounty-tools. A curated list of various bug bounty tools
19email-header-analyzer. E-Mail Header Analyzer
18aquatone. A Tool for Domain Flyovers
18bheh_conky_theme. Black Hat Ethical Hacking - Official Theme for Conky Manager
18KatanaFramework. The New Hacking Framework
18isitalive. This tool will resolve a list of Domains, IPs, Hosts, URLs and save the results for valid/invalid fast!
18ruler. A tool to abuse Exchange services
18Mobile-Security-Framework-MobSF. Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.
17urh. Universal Radio Hacker: investigate wireless protocols like a boss 📡😎
17Invoke-TheHash. PowerShell Pass The Hash Utils
16o365-attack-toolkit. A toolkit to attack Office365
16Veil. Veil 3.1.X (Check version info in Veil at runtime)
16cve-bin-tool. This tool scans for a number of common, vulnerable components (openssl, libpng, libxml2, expat and a few others) to let you know if your system includes common libraries with known vulnerabilities.
16lsassy. Extract credentials from lsass remotely
16Talk2Me. Talk2Me interacts with OpenAI's language model to generate text responses and saves the conversation for future reference.
16trape. People tracker on the Internet: OSINT analysis and research tool by Jose Pino
15SecretScanner. :unlock: :unlock: Find secrets and passwords in container images and file systems :unlock: :unlock:
15pegasus_spyware. decompiled pegasus_spyware
14SharpCookieMonster. Extracts cookies from Chrome.
14ODIN. Automated network asset, email, and social media profile discovery and cataloguing.
13