Take it like a gift

sqlipy
sqlipy

Python plugin for Burp Suite that integrates SQLMap using the SQLMap API.

cerbrutus
cerbrutus

Network brute force tool, faster than other existing solutions.

httpscreenshot
httpscreenshot

Grabs screenshots and HTML of large numbers of websites.

Kadimus
Kadimus

Check for and exploit LFI vulnerabilities with a focus on PHP systems.

Jaeles
Jaeles

The Swiss Army knife for automated Web Application Testing

h8mail
h8mail

Powerful and user-friendly password hunting tool.

Interlace
Interlace

Turn single threaded command line applications into a fast, multi-threaded application.

afrog
afrog

A vulnerability scanning tools for penetration testing.

autochrome
autochrome

A shiny new copy of Chromium that will bring colors in your hunt.

Burp NTLM Challenge Decoder
Burp NTLM Challenge Decoder

Burp extension to decode NTLM SSP headers and extract domain/host information.

AhMyth Android RAT
AhMyth Android RAT

Android remote administration tool.

GSAN
GSAN

Extract subdomains from SSL certificates in HTTPS sites.

kicks3
kicks3

S3 bucket finder from html,js and bucket misconfiguration testing tool.

headi
headi

Customisable and automated HTTP header injection.

JD-GUI
JD-GUI

A standalone Java decompiler GUI.