Take it like a gift

Medusa
Medusa

Medusa is a speedy, parallel, and modular, login brute-forcer.

CMSScan
CMSScan

Scan Wordpress, Drupal, Joomla, vBulletin websites for security issues.

jadx
jadx

Dex to Java decompiler.

ADReaper
ADReaper

Enumerate an Active Directory environment with LDAP queries.

crawley
crawley

The unix-way web crawler.

dirlstr
dirlstr

Finds Directory Listings or open S3 buckets from a list of URLs.

DNSCewl
DNSCewl

A DNS bruteforcing wordlist generator.

BurpSuiteHTTPSmuggler
BurpSuiteHTTPSmuggler

A Burp Suite extension to bypass WAFs or test their effectiveness using a number of techniques.

demovfuscator
demovfuscator

A work-in-progress deobfuscator for movfuscated binaries.

dirsearch
dirsearch

Web path scanner.

capa
capa

The FLARE team's open-source tool to identify capabilities in executable files.

apk-mitm
apk-mitm

A CLI application that automatically prepares Android APK files for HTTPS inspection.

droopescan
droopescan

A plugin-based scanner that aids security researchers in identifying issues with several CMSs.

AttifyOS
AttifyOS

Distribution for pentesting IoT devices.

bundler-audit
bundler-audit

Patch-level verification for Bundler.