A tool for developing and executing exploit code against a remote target machine. Other important sub-projects include the Opcode Database, shellcode archive and related research.
RubyOtheractive
12 projectsNetwork › Scanning / Pentesting
A tool for developing and executing exploit code against a remote target machine. Other important sub-projects include the Opcode Database, shellcode archive and related research.
RubyOtheractive
Amass performs DNS subdomain enumeration by scraping the largest number of disparate data sources, recursive brute forcing, crawling of web archives, permuting and altering names, reverse DNS sweeping and other techniques.
GoOtheractive
Fast subdomains enumeration tool for penetration testers
PythonGNU General Public License v2.0slowing
Apache v2, powerful runtime vulnerability scanner for kubernetes, virtual machines and serverless.
TypeScriptApache License 2.0active
Find secrets and passwords in container images and file systems.
GoMIT Licensesteady
Fuzzing engine and fuzz testing framework.
PythonGNU General Public License v2.0active
Enterprise-grade web vulnerability scanner with 60+ attack modules, built in Rust for penetration testing and security assessments.
RustOtheractive
Pompem is an open source tool, which is designed to automate the search for exploits in major databases. Developed in Python, has a system of advanced search, thus facilitating the work of pentesters and ethical hackers. In its current version, performs searches in databases: Exploit-db, 1337day, Packetstorm Security...
PythonGNU General Public License v3.0dormant
Very flexible and fast interactive HTTP enumeration/fuzzing.
GoMIT Licenseactive
A Linux packet crafting tool.
CGNU General Public License v2.0dormant
CLI tool to pentest Cognito AWS instance. It implements three attacks: unwanted account creation, account oracle and identity pool escalation
PythonApache License 2.0slowing
A coroutines-driven Low & Slow traffic generator, written in Rust.
RustGNU General Public License v3.0dormant