Take it like a gift

ActiveScan++
ActiveScan++

Extends Burp Suite's active and passive scanning capabilities.

Legitify
Legitify

Detect misconfigurations and security risks across GitHub and GitLab assets.

Certificate Search
Certificate Search

Get informations about SSL certificates.

BeEF
BeEF

The Browser Exploitation Framework is a penetration testing tool that focuses on the web browser.

github-regexp
github-regexp

Basically a regexp over a GitHub search.

bypasswaf
bypasswaf

Add headers to all Burp requests to bypass some WAF products.

FireShodanMap
FireShodanMap

Realtime map that integrates Firebase, Google Maps and Shodan.

gau
gau

Fetch known URLs from several sources.

FuzzDB
FuzzDB

Attack patterns and primitives for black-box application fault injection and resource discovery.

git-secrets
git-secrets

Prevents you from committing secrets and credentials into git repositories.

pass-station
pass-station

CLI & library to search for default credentials among thousands of products/vendors.

Canarytokens
Canarytokens

Track activity and actions on your network.

JSParser
JSParser

Python script to parse relative URLs from JavaScript files.

tinfoleak
tinfoleak

The most complete open-source tool for Twitter intelligence analysis.

swagroutes
swagroutes

Extract and list API routes from Swagger files in YAML/JSON format.