 |
Kscan |
| Kscan is an all-round scanner developed purely in Go, with functions such as port scanning, protocol. |
|
|
 |
Klyda |
| Highly configurable script for dictionary/spray attacks against online web applications. |
|
|
|
|
|
|
 |
nuclei-wordfence-cve |
| Collection of Nuclei templates dedicated to WordPress core, plugins and themes vulnerabilities. |
|
|
 |
socialhunter |
| Crawls the website and finds broken social media links that can be hijacked |
|
|
 |
Haylxon |
| Blazing-fast tool to grab screenshots of your domain list right from terminal. |
|
|
 |
deps.dev |
| Better understand the structure, construction, and security of open source software packages. |
|
|
 |
bbrf |
| Help you coordinate your reconnaissance workflows across multiple devices. |
|
|
 |
octosql |
| CLI tool which lets you query a plethora of databases and file formats. |
|
|
 |
BugBountyScanner |
| A Bash script and Docker image for Bug Bounty reconnaissance, intended for headless use. |
|
|
 |
Scopein |
| A Go tool for scope management. |
|
|
|
|
 |
Gowhois |
| Whois command implemented by golang with awesome whois servers list. |
|
|
 |
HBSQLI |
| Automated tool for testing header based blind SQL injection. |
|
|
 |
Nimbo-C2 |
| Yet another (simple and lightweight) C2 framework. |
|
|
 |
API fuzzer |
| Fuzz request attributes using common pentesting techniques and lists vulnerabilities. |
|
|
 |
evilginx2 |
| Standalone MITM attack framework allowing for the bypass of 2-factor authentication. |
|
|
 |
Invoke-ADEnum |
| Automate Active Directory Enumeration using PowerView. |
|
|