View in browser

Weekly newsletter n°64

offsec.tools

A vast collection of security tools for bug bounty, pentest and red teaming
offsec.tools is a vast listing of security tools designed to help pentesters and bug hunters in their daily task. The list is organized by tags and provide a quick search engine. The list is feeded by the author and the community. Anyone can add a tool and be listed as a contributor, feel free to check the GitHub repository.

Go to offsec.tools

Tools featured this week

Unredacter
Never ever ever use pixelation as a redaction technique.
Default Credentials Cheat Sheet
One place for all the default credentials to assist on finding devices with default password.
T-Pot
The all in one multi honeypot platform.
caido
A lightweight web security auditing toolkit.
oyente
An analysis tool for smart contracts.
DefaultPassword
Default passwords database sorted by manufacturers.
DotGit
An extension for checking if .git is exposed in visited websites.
icmpdoor
An ICMP reverse shell written in Python3 and scapy.
hunter.how
Internet search engines for security researchers.
LinEnum
Scripted Local Linux Enumeration & Privilege Escalation Checks.

Tools added last week

testssl.sh
Testing TLS/SSL encryption anywhere on any port.

angr
A powerful and user-friendly binary analysis platform.

kube-bench
Checks whether Kubernetes is deployed according to security best practices.

Cuckoo Sandbox
An automated dynamic malware analysis system.

Burp-Wordlist-Generator
Generates wordlists from the Burp sitemap.

cameradar
Hacks its way into RTSP videosurveillance cameras.

Want to see more tools?

Go to offsec.tools

Sponsors