Skip to content
Change the repository type filter

All

    Repositories list

    • nowafpls2

      Public
      Burp Plugin to Bypass WAFs through the insertion of Junk Data
      Python
      130000Updated Jul 14, 2025Jul 14, 2025
    • An open source payments switch written in Rust to make payments fast, reliable and affordable
      Rust
      4k000Updated Jul 9, 2025Jul 9, 2025
    • JavaScript
      10000Updated Jul 8, 2025Jul 8, 2025
    • goyo

      Public
      JavaScript
      4000Updated Jul 8, 2025Jul 8, 2025
    • The Bug Bounty Reconnaissance Framework (BBRF) can help you coordinate your reconnaissance workflows across multiple devices
      Shell
      50000Updated Jul 7, 2025Jul 7, 2025
    • Azure Security Resources and Notes
      PowerShell
      216000Updated Jul 7, 2025Jul 7, 2025
    • zola

      Public
      A fast static site generator in a single binary with everything built-in. https://www.getzola.org
      Rust
      1.1k000Updated Jul 7, 2025Jul 7, 2025
    • JavaScript
      3000Updated Jul 5, 2025Jul 5, 2025
    • NucleiFuzzer is a robust automation tool that efficiently detects web application vulnerabilities, including XSS, SQLi, SSRF, and Open Redirects, leveraging advanced scanning and URL enumeration techniques
      Shell
      258000Updated Jul 4, 2025Jul 4, 2025
    • shosubgo3

      Public
      Small tool to Grab subdomains using Shodan api.
      Go
      68000Updated Jul 3, 2025Jul 3, 2025
    • A purposely vulnerable iOS mobile app
      2000Updated Jul 3, 2025Jul 3, 2025
    • req

      Public
      Simple Go HTTP client with Black Magic
      Go
      375000Updated Jun 27, 2025Jun 27, 2025
    • rec0n

      Public
      Python
      7000Updated Jun 26, 2025Jun 26, 2025
    • dcshadow

      Public
      Python alternative to Mimikatz lsadump::dcshadow
      Python
      17000Updated Jun 24, 2025Jun 24, 2025
    • lightyear is a tool to dump files in tedious (blind) conditions using PHP filters
      Python
      11000Updated Jun 23, 2025Jun 23, 2025
    • lightyear

      Public
      lightyear is a tool to dump files in tedious (blind) conditions using PHP filters
      Python
      11000Updated Jun 23, 2025Jun 23, 2025
    • SQL Injection Scanner Pro is a sophisticated security assessment tool designed to identify SQL injection vulnerabilities in web applications. Combining automated scanning with comprehensive reporting, this tool helps security professionals and developers uncover database security flaws before attackers can exploit them.
      Python
      2000Updated Jun 22, 2025Jun 22, 2025
    • ctail

      Public
      Tail Certificate Transparency logs and extract hostnames
      Go
      11000Updated Jun 21, 2025Jun 21, 2025
    • golem

      Public
      Golem automates C/C++ vulnerability discovery with SemGrep+LLVM+LLM
      Python
      9000Updated Jun 20, 2025Jun 20, 2025
    • AWSRAID

      Public
      AWS services enumerator for penetration testing
      Python
      4000Updated Jun 17, 2025Jun 17, 2025
    • Simple HTTPs Python Server :D
      Python
      1000Updated Jun 11, 2025Jun 11, 2025
    • psudohash

      Public
      Generates millions of keyword-based password mutations in seconds.
      Python
      169000Updated Jun 8, 2025Jun 8, 2025
    • Python
      8000Updated Jun 7, 2025Jun 7, 2025
    • Abuse trust-boundaries to bypass firewalls and network controls
      Go
      57000Updated Jun 7, 2025Jun 7, 2025
    • go-socks5

      Public
      socks5 server in pure Golang with much custom optional. Full TCP/UDP and IPv4/IPv6 support.
      Go
      84000Updated Jun 6, 2025Jun 6, 2025
    • newtowner

      Public
      Abuse trust-boundaries to bypass firewalls and network controls
      Go
      57000Updated Jun 5, 2025Jun 5, 2025
    • Python
      8000Updated Jun 4, 2025Jun 4, 2025
    • macos1

      Public
      macOS inside a Docker container.
      Shell
      772000Updated Jun 2, 2025Jun 2, 2025
    • A deliberately vulnerable banking application designed for practicing secure code reviews and API security testing. Features common vulnerabilities found in real-world applications, making it an ideal platform for security professionals, developers, and enthusiasts to learn security testing and secure coding practices in a safe environment.
      Python
      131000Updated Jun 2, 2025Jun 2, 2025
    • string-x

      Public
      Ferramenta modular de automatização desenvolvida para auxiliar analistas em OSINT, pentest e análise de dados através da manipulação dinâmica de strings em linhas de comando Linux. Sistema baseado em templates com processamento paralelo e módulos extensíveis.
      Python
      3000Updated Jun 2, 2025Jun 2, 2025