Take it like a gift

S3BucketList
S3BucketList

Firefox plugin that lists Amazon S3 Buckets found in requests.

cve
cve

Gather and update all available and newest CVEs with their PoC.

Gowhois
Gowhois

Whois command implemented by golang with awesome whois servers list.

BeRoot
BeRoot

Multiplaform privilege escalation project.

al-khaser
al-khaser

Public malware techniques used in the wild: virtual machine, emulation, debuggers.

a2sv
a2sv

Auto Scanning to SSL Vulnerability.

cheat.sh
cheat.sh

The only cheat sheet you need.

Commando VM
Commando VM

Fully customizable Windows-based pentesting virtual machine distribution.

bypasswaf
bypasswaf

Add headers to all Burp requests to bypass some WAF products.

curate
curate

A tool for fetching archived URLs.

Dismap
Dismap

Asset discovery and identification tool.

detectify-cves
detectify-cves

Find CVEs that don't have a Detectify modules.

csp-analyzer
csp-analyzer

Analyze Content-Security-Policy header of a given URL.

CORStest
CORStest

A simple CORS misconfiguration scanner.

BruteXSS
BruteXSS

Tool written in Python simply to find XSS vulnerabilities in web application.