Take it like a gift

http-request-smuggling
http-request-smuggling

HTTP Request Smuggling Detection Tool.

deps.dev
deps.dev

Better understand the structure, construction, and security of open source software packages.

honggfuzz
honggfuzz

A security oriented software fuzzer.

hakip2host
hakip2host

Takes a list of IP addresses then does a series of checks to return associated domain names.

clairvoyance
clairvoyance

Obtain GraphQL API Schema even if the introspection is not enabled.

httprobe
httprobe

Take a list of domains and probe for working HTTP and HTTPS servers.

headi
headi

Customisable and automated HTTP header injection.

wifi-bruteforcer-fsecurify
wifi-bruteforcer-fsecurify

Android application to brute force WiFi passwords without requiring a rooted device.

dnstwist_
dnstwist_

A tool to monitor for potential spear phishing domains and send to Slack.

Amass
Amass

In-depth Attack Surface Mapping and Asset Discovery.

hrekt
hrekt

A really fast HTTP prober.

2tearsinabucket
2tearsinabucket

Enumerate s3 buckets for a specific target.

hping
hping

Network tool able to send custom TCP/IP packets.

bounty-targets
bounty-targets

Crawls bug bounty platform scopes.

cariddi
cariddi

Crawl urls and scan for endpoints, secrets, api keys, file extensions, tokens and more.