Take it like a gift

SearchSploit
SearchSploit

Cli tool for Exploit-DB that also allows you to take a copy of Exploit Database with you.

Arjun
Arjun

HTTP parameter discovery suite.

sqlipy
sqlipy

Python plugin for Burp Suite that integrates SQLMap using the SQLMap API.

Supernova
Supernova

Real fucking shellcode encryptor & obfuscator tool.

FireBounty
FireBounty

The ultimate Vulnerability Disclosure Policy and Bug Bounty list!

John Hammond
John Hammond

John Hammond YouTube channel.

subHijack
subHijack

Hijacking forgotten & misconfigured subdomains.

TerminatorZ
TerminatorZ

Scan for top potential vulnerabilities with known CVEs in your web applications.

SSLyze
SSLyze

Fast and powerful SSL/TLS scanning library.

Burp Suite
Burp Suite

The class-leading vulnerability scanning, penetration testing, and web app security platform.

SubOver
SubOver

A Powerful Subdomain Takeover Tool.

shosubgo
shosubgo

Small tool to grab subdomains using Shodan API.

boofuzz
boofuzz

Network protocol fuzzing for humans.

Kraken
Kraken

A modular multi-language webshell.

ssh-auditor
ssh-auditor

The best way to scan for weak ssh passwords on your network.