Take it like a gift

DumpsterDiver
DumpsterDiver

Tool to search secrets in various filetypes.

TrevorC2
TrevorC2

A legitimate website that tunnels client/server communications for covert command execution.

Subjack
Subjack

Subdomain Takeover tool written in Go.

The XSS rat
The XSS rat

The XSS rat YouTube channel.

PEASS-ng
PEASS-ng

Privilege Escalation Awesome Scripts SUITE.

OpenBuckets
OpenBuckets

Online platform for finding open buckets in cloud storage systems effortlessly.

SSRFmap
SSRFmap

Automatic SSRF fuzzer and exploitation tool.

SSTImap
SSTImap

Automatic SSTI detection tool with interactive interface.

RacePWN
RacePWN

Race Condition framework.

sub-domain enumeration techniques
sub-domain enumeration techniques

Esoteric sub-domain enumeration techniques - Bugcrowd LevelUp

Medusa
Medusa

Medusa is a speedy, parallel, and modular, login brute-forcer.

Mr.SIP
Mr.SIP

SIP-based audit and attack tool.

StaCoAn
StaCoAn

Crossplatform tool which help to perform static code analysis on mobile applications.

linx
linx

Reveals invisible links within JavaScript files.

SSRF Detector
SSRF Detector

Server-side request forgery detector.