A vast collection of security tools for bug bounty, pentest and red teaming

#rce

Shells on offsec.tools
Sponsor
Shells

A script for generating common revshells fast and easily.

TerminatorZ on offsec.tools
TerminatorZ

Scan for top potential vulnerabilities with known CVEs in your web applications.

#csrf   #cves   #rce   #scanner   #sqli   #xss  

PowerSploit on offsec.tools
PowerSploit

A PowerShell Post-Exploitation Framework.

reGeorg on offsec.tools
reGeorg

Pwn a bastion webserver and create SOCKS proxies through the DMZ.

reDuh on offsec.tools
reDuh

Create a TCP circuit through validly formed HTTP requests.

weevely3 on offsec.tools
weevely3

Weaponized web shell.

#exploits   #http   #php   #rce   #shell  

SUDO_KILLER on offsec.tools
SUDO_KILLER

A tool to identify and exploit sudo rules misconfigurations and vulnerabilities.

ShellPop on offsec.tools
ShellPop

Pop shells like a master.

Agartha on offsec.tools
Agartha

Burp Suite extension for dynamic payload generation to detect injection flaws.

#burpsuite   #lfi   #payloads   #rce   #sqli   #xss  

AutoSploit on offsec.tools
AutoSploit

Automated Mass Exploiter.

RevShells on offsec.tools
RevShells

Hosted Reverse Shell generator with a ton of functionality.

Shelling on offsec.tools
Shelling

A comprehensive OS command injection payload generator.

Gopherus on offsec.tools
Gopherus

Generates gopher link for exploiting SSRF and gaining RCE in various servers.

Commix on offsec.tools
Commix

Automated All-in-One OS Command Injection Exploitation Tool.