Collect and maintain internet-wide assets data for public Bug Bounty programs.
Rapid content discovery tool for recursively querying webservers.
Try to find the origin IP of a webapp protected by Cloudflare.
A complete TUI for LDAP.
Improve the active and passive Burp Suite scanner by means of custom rules through GUI.
Automated client-side template injection detection for AngularJS.
Obfuscation script designed to bypass AMSI and commercial antivirus solution.
OSINT tool for finding Github repositories by extracting commit logs in real time.
Self contained web shells and other attacks via .htaccess files.
Gives root access on remote docker containers that expose their APIs.
DeHashed provides free deep-web scans and protection against credential leaks.
Leverage ASN to look up IP addresses owned by a specific organization.
HTTP-traceroute in Go.
An open-source, free protector for .NET applications.
Create vulnerable instrumented local or cloud environments to simulate attacks.