Take it like a gift

dnsReaper
dnsReaper

Subdomain takeover tool for attackers, bug bounty hunters and the blue team!

owasp MASTG
owasp MASTG

Comprehensive manual for mobile application security testing and reverse engineering.

s3cXSSer
s3cXSSer

This extension will help you to detect GET/POST based XSS vulnerability in any website easily.

Sandcastle
Sandcastle

A Python script for AWS S3 bucket enumeration.

Firefly
Firefly

Black box fuzzer for web applications.

adPEAS
adPEAS

Powershell tool to automate Active Directory enumeration.

RedHunt-OS
RedHunt-OS

Virtual machine for adversary emulation and threat hunting.

Angry IP Scanner
Angry IP Scanner

Fast and simple-to-use open-source/cross-platform network scanner.

4-ZERO-3
4-ZERO-3

403/401 Bypass Methods.

honggfuzz
honggfuzz

A security oriented software fuzzer.

Arachni
Arachni

Web Application Security Scanner Framework.

rexsser
rexsser

Burp Suite plugin that extracts keywords from response using and test for reflected XSS.

Autorize
Autorize

Automatic authorization enforcement detection extension for Burp Suite.

S3Scanner
S3Scanner

Scan for open S3 buckets and dump the contents.

Amnesiac
Amnesiac

Post-exploitation framework designed to assist with lateral movement within Active Directory.