View in browser

Weekly newsletter n°41

offsec.tools

A vast collection of security tools for bug bounty, pentest and red teaming
offsec.tools is a vast listing of security tools designed to help pentesters and bug hunters in their daily task. The list is organized by tags and provide a quick search engine. The list is feeded by the author and the community. Anyone can add a tool and be listed as a contributor, feel free to check the GitHub repository.

Go to offsec.tools

Tools featured this week

Aranea
OSINT tool used for web crawling or examining JavaScript files for likely useful data.
fcrackzip
Zip password cracker.
P4wnP1 A.L.O.A.
Turn a Rapsberry Pi Zero W into a flexible, low-cost platform for pentesting, red teaming or PE.
PersistenceSniper
Hunt persistences implanted in Windows machines.
wgen.io
Generate rich wordlists for targeted attacks online.
Graphicator
Enumerate and extract GraphQL APIs.
B-XSSRF
Toolkit to detect and keep track on Blind XSS, XXE & SSRF.
evilgophish
Combination of evilginx3 and GoPhish.
ReverseKit
A dynamic reverse engineering toolkit.
DNSExfiltrator
Data exfiltration over DNS request covert channel.

Tools added last week

osintname
Generate emails and usernames.

mana
Wifi rogue AP attacks and MitM.

x64dbg
An open-source user mode debugger for Windows for reverse engineering and malware analysis.

Apktool
A tool for reverse engineering Android APK files.

lynis
Security auditing tool for Linux, macOS, and UNIX-based systems.

pwntools
CTF framework and exploit development library.

Osintgram
An interactive shell to perform analysis on Instagram account of any users by its nickname.

twint
Twitter scraping & OSINT tool allowing you to scrape a user's followers, following, tweets and more.

tinfoleak
The most complete open-source tool for Twitter intelligence analysis.

bore
A simple CLI tool for making tunnels to localhost.

pupy
Opensource, cross-platform C2 and post-exploitation framework written in python and C.

honggfuzz
A security oriented software fuzzer.

changedetection.io
Page change monitoring with alerts a breezem, the best way to monitor website changes.

UglifyJS
A JavaScript parser, minifier, compressor and beautifier toolkit.

Want to see more tools?

Go to offsec.tools

Sponsors