Take it like a gift

vcsmap
vcsmap

Plugin-based tool to scan public version control systems for sensitive information.

graphql-armor
graphql-armor

The missing GraphQL security security layer.

Fuzzilli
Fuzzilli

A JavaScript Engine Fuzzer.

gitpillage
gitpillage

Extract data from a .git directory.

JPEXS
JPEXS

Free Flash decompiler.

DivideAndScan
DivideAndScan

Divide full port scan results and use it for targeted Nmap runs.

gf
gf

A wrapper around grep to avoid typing common patterns.

brutesubs
brutesubs

Automation framework for running multiple open sourced subdomain bruteforcing tools in parallel.

GAP
GAP

A Burp Suite extension to find potential endpoints and parameters.

Vegile
Vegile

Post exploitation tool to maintain some level of acces.

Rengine
Rengine

Automated reconnaissance framework for webapps, highly configurable streamlined recon process.

bounty-targets
bounty-targets

Crawls bug bounty platform scopes.

subzy
subzy

Subdomain takeover vulnerability checker.

cstc
cstc

Burp Suite extension that allows request/response modification using a GUI.

GhostTrack
GhostTrack

Useful tool to track location or mobile number.