Skip to content
Change the repository type filter

All

    Repositories list

    • MATRIX

      Public
      Python
      1400Updated May 7, 2025May 7, 2025
    • HTML
      4600Updated Feb 7, 2025Feb 7, 2025
    • Utility to manipulate SDBM files used by ModSecurity. With that utility it is possible to _shrink_ SDBM databases. It is also possible to list the SDBM contents with filters such as: expired or invalid items only.
      C
      172223Updated Aug 16, 2024Aug 16, 2024
    • Burp Notes Extension is a plugin for Burp Suite that adds a Notes tab. The tool aims to better organize external files that are created during penetration testing.
      Java
      276721Updated May 16, 2024May 16, 2024
    • snappy

      Public
      Python
      2226701Updated Jun 26, 2023Jun 26, 2023
    • Simple REST-style web service for the CVE searching
      Ruby
      389855Updated May 19, 2023May 19, 2023
    • Set of CLI tools to transform ModSecurity logs into a meaningful information, given a context.
      Python
      205344Updated May 5, 2023May 5, 2023
    • Jorogumo

      Public
      Red Team Stored XSS SVG phishing-companion tool with the ability to serve a malicious login page, or clone an html page and implement custom javascript. It then generates a relevant SVG.
      Python
      83000Updated Mar 31, 2023Mar 31, 2023
    • HostHunter a recon tool for discovering hostnames using OSINT techniques.
      Python
      1941.1k00Updated Mar 30, 2023Mar 30, 2023
    • C
      161711Updated Sep 9, 2022Sep 9, 2022
    • Grandoreiro decryptor and DGA generator (26.May.2022)
      Python
      2100Updated May 26, 2022May 26, 2022
    • C#
      246440Updated Oct 19, 2021Oct 19, 2021
    • IOCs-IDPS

      Public
      This repository will hold PCAP IOC data related with known malware samples (owner: Bryant Smith)
      3010400Updated Jul 29, 2021Jul 29, 2021
    • Configuration file for REvil / Kaseya July campaign
      1400Updated Jul 6, 2021Jul 6, 2021
    • pingback

      Public
      Python
      62810Updated May 4, 2021May 4, 2021
    • masher

      Public
      multiple password 'asher using Python’s hashlib
      Python
      51500Updated Mar 24, 2021Mar 24, 2021
    • A Burp Extension to test applications for vulnerability to the Web Cache Deception attack
      Java
      3413902Updated Feb 18, 2021Feb 18, 2021
    • OWASP-CRS-regressions

      Public archive
      Regression tests for OWASP CRS v3
      Python
      141671Updated Aug 7, 2020Aug 7, 2020
    • Documentation for the OWASP CRS project
      Python
      194025Updated Aug 7, 2020Aug 7, 2020
    • groupenum

      Public archive
      Python
      175700Updated Aug 7, 2020Aug 7, 2020
    • msfrpc

      Public archive
      Perl/Python modules for interfacing with Metasploit MSGRPC
      Python
      609632Updated Aug 7, 2020Aug 7, 2020
    • portia

      Public archive
      Portia aims to automate a number of techniques commonly performed on internal network penetration tests after a low privileged account has been compromised.
      PowerShell
      13350362Updated Aug 7, 2020Aug 7, 2020
    • cribdrag

      Public archive
      cribdrag - an interactive crib dragging tool for cryptanalysis on ciphertext generated with reused or predictable stream cipher keys
      Python
      7017500Updated Aug 7, 2020Aug 7, 2020
    • Firework

      Public archive
      Firework is a proof of concept tool to interact with Microsoft Workplaces creating valid files required for the provisioning process.
      Python
      104400Updated Aug 7, 2020Aug 7, 2020
    • SharpCompile

      Public archive
      SharpCompile is an aggressor script for Cobalt Strike which allows you to compile and execute C# in realtime. This is a more slick approach than manually compiling an .NET assembly and loading it into Cobalt Strike. The project aims to make it easier to move away from adhoc PowerShell execution instead creating a temporary assembly and executing…
      C#
      5829200Updated Aug 7, 2020Aug 7, 2020
    • DoHC2

      Public archive
      DoHC2 allows the ExternalC2 library from Ryan Hanson (https://github.com/ryhanson/ExternalC2) to be leveraged for command and control (C2) via DNS over HTTPS (DoH).
      C#
      9645120Updated Aug 7, 2020Aug 7, 2020
    • deblaze

      Public archive
      Performs method enumeration and interrogation against flash remoting end points.
      Python
      183804Updated Aug 7, 2020Aug 7, 2020
    • MCIR

      Public archive
      The Magical Code Injection Rainbow! MCIR is a framework for building configurable vulnerability testbeds. MCIR is also a collection of configurable vulnerability testbeds.
      PHP
      15844201Updated Aug 7, 2020Aug 7, 2020
    • Nmap-Tools

      Public archive
      SpiderLabs shared Nmap Tools
      Lua
      7822914Updated Aug 7, 2020Aug 7, 2020
    • jboss-autopwn

      Public archive
      A JBoss script for obtaining remote shell access
      Shell
      5417301Updated Aug 7, 2020Aug 7, 2020