offsec.tools
A vast collection of security tools for bug bounty, pentest and red teaming
Featured tools this week
10 results



Featured
Vajra
UI-based tool with multiple techniques for attacking and enumerating Azure and AWS environment.


Featured
PortSwigger WebSecurity Academy
Free, online web security training from the creators of Burp Suite.

Featured
Freddy Deserialization Bug Finder
A Burp Suite extension to aid in detecting and exploiting serialisation libraries/APIs.


Featured
XSSwagger
A simple Swagger-ui scanner that can detect old versions vulnerable to various XSS attacks.

Featured
Shadow Workers
C2 and proxy designed to help in the exploitation of XSS and malicious Service Workers.
