Take it like a gift

detectify-cves
detectify-cves

Find CVEs that don't have a Detectify modules.

msfpc
msfpc

A quick way to generate various basic Meterpreter payloads via MSFvenom.

ClassyShark
ClassyShark

Android and Java bytecode viewer.

PoshC2
PoshC2

A proxy aware C2 framework used to aid with post-exploitation and lateral movement.

CMSeek
CMSeek

CMS Detection and Exploitation suite that supports over 180 other CMSs.

Genzai
Genzai

Helps to identify IoT related dashboards and scan them for default passwords.

Burp NTLM Challenge Decoder
Burp NTLM Challenge Decoder

Burp extension to decode NTLM SSP headers and extract domain/host information.

burp-vulners-scanner
burp-vulners-scanner

Vulnerability scanner based on vulners.com search API.

autoSubTakeover
autoSubTakeover

A tool used to check if a CNAME resolves to the scope address.

DivideAndScan
DivideAndScan

Divide full port scan results and use it for targeted Nmap runs.

TugaRecon
TugaRecon

Subdomains enumeration tool for penetration testers.

2tearsinabucket
2tearsinabucket

Enumerate s3 buckets for a specific target.

GadgetProbe
GadgetProbe

Probe endpoints consuming Java serialized objects for fingerprinting.

XSRFProbe
XSRFProbe

The Prime Cross Site Request Forgery Audit and Exploitation Toolkit.

espionage
espionage

Collects informations related to domains whois, history, dns records and more.