Take it like a gift

lsassy
featured
lsassy

Python tool to remotely extract credentials on a set of hosts.

LocalPotato
LocalPotato

Another local Windows privilege escalation using a new potato technique.

SysReptor
SysReptor

Easy and customisable pentest report creator based on simple web technologies.

PsMapExec
PsMapExec

A PowerShell tool heavily inspired by the popular tool CrackMapExec/NetExec.

macchanger
macchanger

Makes the maniputation of MAC addresses of network interfaces easier.

litefuzz
litefuzz

A multi-platform fuzzer for poking at userland binaries and servers.

Prenum
Prenum

The perils of the pre-Windows 2000 compatible access group in a Windows domain.

OAUTHScan
OAUTHScan

Burp Suite Extension useful to verify OAUTHv2 and OpenID security.

Offensive Security
Offensive Security

Offensive Security Youtube channel.

ppmap
ppmap

Exploitation tool which leverages client-side Prototype Pollution to XSS.

mass-s3-bucket-tester
mass-s3-bucket-tester

Tests a list of s3 buckets to see if they have dir listings enabled or if they are uploadable.

Nikto
Nikto

Nikto web server scanner.

Nginxpwner
Nginxpwner

Simple tool to look for common Nginx misconfigurations and vulnerabilities.

msldap
msldap

LDAP library for auditing Microsoft Active Directory.

Print-My-Shell
Print-My-Shell

Automate the process of generating various reverse shells.