Take it like a gift

GadgetProbe
GadgetProbe

Probe endpoints consuming Java serialized objects for fingerprinting.

catphish
catphish

Generate similar-looking domains for phishing attacks.

SecretMagpie
SecretMagpie

Secret Detection Tool.

X8
X8

Hidden parameters discovery suite.

Smogcloud
Smogcloud

Find cloud assets that no one wants exposed.

Semgrep
Semgrep

Lightweight static analysis for many languages.

spaces-finder
spaces-finder

A tool to hunt for publicly accessible DigitalOcean Spaces.

sentrySSRF
sentrySSRF

Searching for Sentry config on page or in Javascript files and check blind SSRF.

Seatbelt
Seatbelt

Performs security oriented safety checks relevant from offensive/defensive security perspectives.

FindUncommonShares
FindUncommonShares

Quickly find uncommon shares in vast Windows domains.

Vajra
Vajra

UI-based tool with multiple techniques for attacking and enumerating Azure and AWS environment.

ncrack
ncrack

Open source tool for network authentication cracking.

subnerium
subnerium

A fast passive subdomain enumeration tool that uses various sources to gather data.

BeRoot
BeRoot

Multiplaform privilege escalation project.

dufflebag
dufflebag

Search exposed EBS volumes for secrets.