View in browser

Weekly newsletter n°32

offsec.tools

A vast collection of security tools for bug bounty, pentest and red teaming
offsec.tools is a vast listing of security tools designed to help pentesters and bug hunters in their daily task. The list is organized by tags and provide a quick search engine. The list is feeded by the author and the community. Anyone can add a tool and be listed as a contributor, feel free to check the GitHub repository.

Go to offsec.tools

Tools featured this week

Brute Hacking Framework
A framework including all the tools that work on Windows.
CORStest
A simple CORS misconfiguration scanner.
Fuzzapi
Used for REST API pentesting and provide UI solution for gem.
Metabigor
Intelligence tool to do OSINT tasks and more but without any API key.
Unforce
Salesforce lightning recon and exploitation tool.
cve-collector
Simple latest CVE collector written in Python.
Commando VM
Fully customizable Windows-based pentesting virtual machine distribution.
Dastardly Scan Action
Runs a scan using Dastardly by Burp Suite against a target site and generates a report.
Freeze-rs
Payload toolkit for bypassing EDRs using suspended processes, direct syscalls written.
SQLMutant
Searches for automated subdomain enumeration and runs SQLi tests.

Tools added last week

OpenBuckets
Online platform for finding open buckets in cloud storage systems effortlessly.

BucketLoot
An automated S3-compatible bucket inspector.

Certipy
Active Directory Certificate Services enumeration and abuse.

MANSPIDER
Spider entire networks for juicy files sitting on SMB shares.

NetExec
Network service exploitation tool that helps automate assessing the security of large networks.

tun2socks
Handle all network traffic of any internet programs sent by the device through a proxy.

HEKATOMB
Connects to LDAP directory to retrieve all computers and users informations.

Commando VM
Fully customizable Windows-based pentesting virtual machine distribution.

SharPersist
Windows persistence toolkit written in C#.

mitm6
pwning IPv4 via IPv6.

msfpc
A quick way to generate various basic Meterpreter payloads via MSFvenom.

crowbar
Brute forcing tool that support several uncommon protocols.

Want more to see more tools?

Go to offsec.tools

Sponsors