Take it like a gift

Ronin
Ronin

A free and open source Ruby toolkit for security research and development.

XXE-FTP
XXE-FTP

A mini webserver with FTP support for XXE payloads.

Frida
Frida

Dynamic instrumentation toolkit for developers, reverse-engineers, and security researchers.

axiom
axiom

Distribute the workload of many different scanning tools with ease.

pass-station
pass-station

CLI & library to search for default credentials among thousands of products/vendors.

Modlishka
Modlishka

A powerful and flexible HTTP reverse proxy.

bountyplz
bountyplz

Automated security reporting from markdown templates.

Kubestroyer
Kubestroyer

Exploit Kubernetes clusters misconfigurations and be the swiss army knife of your pentests.

drek
drek

A static-code-analysis tool for performing security-focused code reviews.

PwnFox
PwnFox

A Firefox/Burp Suite extension that provide usefull tools for your security audit.

passiveDNS
passiveDNS

A network sniffer that logs all DNS server replies for use in a passive DNS setup.

IPRotate
IPRotate

Extension for Burp Suite which uses AWS API Gateway to rotate your IP on every request.

OneFuzz
OneFuzz

A self-hosted fuzzing-as-a-service platform.

DVWS
DVWS

Vulnerable application with a web service and an API.

PoshC2
PoshC2

A proxy aware C2 framework used to aid with post-exploitation and lateral movement.