Take it like a gift

angr
angr

A powerful and user-friendly binary analysis platform.

FinDOM-XSS
FinDOM-XSS

A fast DOM based XSS vulnerability scanner with simplicity.

DTD Finder
DTD Finder

List DTDs and generate XXE payloads using those local DTDs.

Quasar
Quasar

Remote administration tool for Windows.

go-secdump
go-secdump

Tool to remotely dump secrets from the Windows registry.

phpsploit
phpsploit

Full-featured C2 framework which silently persists on webserver with a single-line PHP backdoor.

Empire
Empire

Post-exploitation and adversary emulation framework that is used to aid Red Teams and pentesters.

regulator
regulator

Automated learning of regexes for DNS discovery.

morphHTA
morphHTA

Morphing Cobalt Strike's evil.HTA.

RsaCtfTool
RsaCtfTool

RSA multi-attacks tool: uncypher data from a weak public key and try to recover a private key.

dsieve
dsieve

Filter and enrich a list of subdomains by level.

Kekeo
Kekeo

A little toolbox to play with Microsoft Kerberos in C.

evil SSDP
evil SSDP

Spoof SSDP replies to phish for credentials and NetNTLM challenge/response.

Locksmith
Locksmith

Detect and fix common misconfigurations in Active Directory Certificate Services.

WES-NG
WES-NG

Windows Exploit Suggester - Next Generation.