View in browser

Weekly newsletter n°63

offsec.tools

A vast collection of security tools for bug bounty, pentest and red teaming
offsec.tools is a vast listing of security tools designed to help pentesters and bug hunters in their daily task. The list is organized by tags and provide a quick search engine. The list is feeded by the author and the community. Anyone can add a tool and be listed as a contributor, feel free to check the GitHub repository.

Go to offsec.tools

Tools featured this week

JPEXS
Free Flash decompiler.
GitTools
A repository with 3 tools for pwn'ing websites with .git repositories available.
ADAPE Script
Active Directory assessment and privilege escalation script.
RED HAWK
All in one tool for information gathering, vulnerability scanning and crawling.
x64dbg
An open-source user mode debugger for Windows for reverse engineering and malware analysis.
o365recon
Retrieve information via O365 and AzureAD with valid credentials.
fuxploider
File upload vulnerability scanner and exploitation tool.
Canarytokens
Track activity and actions on your network.
ExifTool
ExifTool meta information reader/writer.
PowerUpSQL
A PowerShell toolkit for attacking SQL Server.

Tools added last week

Unredacter
Never ever ever use pixelation as a redaction technique.

ClassyShark
Android and Java bytecode viewer.

falco
Cloud native runtime security.

checkov
Prevent cloud misconfigurations and find vulnerabilities during build-time.

T-Pot
The all in one multi honeypot platform.

maltrail
Malicious traffic detection system.

Dshell
A network forensic analysis framework.

linux-exploit-suggester
Linux privilege escalation auditing tool.

sqli-labs
SQLI labs to test error based, blind boolean based, time based.

Luyten
An Open Source Java Decompiler GUI for Procyon.

Dispatch
All of the ad-hoc things you're doing to manage incidents today, done for you, and much more!.

grr
An incident response framework focused on remote live forensics.

Want to see more tools?

Go to offsec.tools

Sponsors