This is your work, valued

Earth

Eslam Akl

Elite
@eslam3kl

Penetration Tester | Author of +9 0day vulnerabilities | Bug Hunter and more :) ⚠️ Account & Opinions are my own, not those of my employer.

3klCon. Automation Recon tool which works with Large & Medium scopes. It performs a lot of tasks and gets back all the results in separated files.

689

SQLiDetector. Simple python script supported with BurpBouty profile that helps you to detect SQL injection "Error based" by sending multiple requests with 14 payloads and checking for 152 regex patterns for different databases.

639

crtfinder. Fast tool to extract all subdomains from crt.sh website. Output will be up to sub.sub.sub.subdomain.com with standard and advanced search techniques

115

GG-Dorking. GG Dorking is a tool to generate GitHub and Google dorking for pentesters and bug bounty hunters.

103

ShoLister. ShoLister is a tool that collects all available subdomains for specific hostname or organization from Shodan. The tool is designed to be used from Penetration Tester and Bug Bounty Hunters.

59

3klector. 3klector is an automation Recon tool which collecting information about Acquisitions and ASN which related to Big Scope company

47

Explorer. Explorer is a very useful tool which will help you in the Recon phase in Bug Bounty hunting or Web Pentesting. It can perform a lot of things individually or all together.

23

PackSniff. PackSniff tool is used to sniff the packet which come to your machine after performing ARP Spoofing as a part of the Man-In-The-Middle attacks.

4

MAC_Changer. This is simple tool to change your MAC address in specific Interface. This tool written in python.

4

Shodomain. Shodan subdomain finder

4

meowEye. MeowEye is a real-time scanner for identifying multiple web vulnerabilities in live applications.

4

awesome-cve-poc. ✍️ A curated list of CVE PoCs.

3

quick-pentest-scripts. small straightforward quick scripts

3

RoboWrecker. Weaponized AI framework for testing and breaking other AI agents.

3

ARP-Spoofer. This tool used to be MITM Attack. To be in the middle between 2 machines like victim machine and the router.

2

My_CVEs. This repository contain all my assigned CVEs. Some of them are public and the other will be published soon.

2

NetScanner. This simple tool is used ot get the IPs and MAC addresses of the devices which connect to your network.

2

SecurityTesting. Shell

1

SecLists. SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.

1

reconftw. reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities

1

Gf-Patterns. GF Paterns For (ssrf,RCE,Lfi,sqli,ssti,idor,url redirection,debug_logic, interesting Subs) parameters grep

1

exphub. Exphub[漏洞利用脚本库] 包括Webloigc、Struts2、Tomcat、Nexus、Solr、Jboss、Drupal的漏洞利用脚本,最新添加CVE-2020-14882、CVE-2020-11444、CVE-2020-10204、CVE-2020-10199、CVE-2020-1938、CVE-2020-2551、CVE-2020-2555、CVE-2020-2883、CVE-2019-17558、CVE-2019-6340

1