Take it like a gift

HardeningKitty
HardeningKitty

Checks and hardens your Windows configuration.

MultiDump
MultiDump

Post-exploitation tool for dumping and extracting LSASS memory discreetly.

LinkFinder
LinkFinder

A python script that finds endpoints in JavaScript files.

mentalist
mentalist

Graphical tool for custom wordlist generation.

findsecuritycontacts.com
findsecuritycontacts.com

Scans the top 500 sites daily for their security.txt file or DNS records.

SecGen
SecGen

Create randomly insecure VMs.

Tamper Data
Tamper Data

View and modify HTTP requests before they are sent.

Reaver
Reaver

Implements a brute force attack against Wifi Protected Setup (WPS) registrar PINs.

SMBetray
SMBetray

Attack clients through file content swapping and compromise any data passed in cleartext.

Payloads All The Things
Payloads All The Things

A list of useful payloads and bypass for Web Application Security.

karma v2
karma v2

Passive open source intelligence automated reconnaissance.

Hijacker
Hijacker

GUI for the penetration testing tools Aircrack-ng, Airodump-ng, MDK3 and Reaver.

Hydra
Hydra

Very fast password cracking tool.

impacket
impacket

Collection of Python classes for working with network protocols.

Headless Burp
Headless Burp

Provides a suite of extensions and a maven plugin to automate security tests using Burp Suite.