View in browser

Weekly newsletter n°59

offsec.tools

A vast collection of security tools for bug bounty, pentest and red teaming
offsec.tools is a vast listing of security tools designed to help pentesters and bug hunters in their daily task. The list is organized by tags and provide a quick search engine. The list is feeded by the author and the community. Anyone can add a tool and be listed as a contributor, feel free to check the GitHub repository.

Go to offsec.tools

Tools featured this week

orpheus
Bypass Kerberoast detections with modified KDC options and encryption types.
xxeserv
A mini webserver with FTP support for XXE payloads.
Athena OS
Arch Linux-based distro focused on Cybersecurity. Learn, practice and enjoy with any hacking tool!
Xenotix
An advanced Cross Site Scripting vulnerability detection and exploitation framework.
graphql-voyager
Represent any GraphQL API as an interactive graph.
cve
Gather and update all available and newest CVEs with their PoC.
OSINT-Framework
OSINT Framework.
changedetection.io
Page change monitoring with alerts a breezem, the best way to monitor website changes.
Namechk
Check usernames on more than 100 websites, forums and social networks.
gcp_scanner
A comprehensive scanner for Google Cloud.

Tools added last week

SessionProbe
Evaluate user privileges in web applications across a list of URLs.

kernel-exploit-factory
Linux kernel CVE exploit analysis report and relative debug environment.

godap
A complete TUI for LDAP.

CloakQuest3r
Uncover the true IP address of websites safeguarded by Cloudflare & others.

Juumla
Identify Joomla version, scan for vulnerabilities and sensitive files.

PwnShell
Command execution exploiter with an auto connection handling.

Chimera
Obfuscation script designed to bypass AMSI and commercial antivirus solution.

webhook
A lightweight incoming webhook server to run shell commands.

Want to see more tools?

Go to offsec.tools

Sponsors