
-
osintarchive Public
A wrapper for Wayback CDX that allows to passively enumerate website endpoints based on snapshot/crawl history.
Shell UpdatedFeb 18, 2025 -
exploit-xmlrpc-wordpress Public
Yet another WordPress XML-RPC endpoint PoC, intended for pentest reporting purposes.
Python UpdatedFeb 18, 2025 -
azure-guidelines Public
๐ต๏ธโโ๏ธ Azure vulnerability guidelines / checklist compiled from multiple sources. - Akademia WIT 2025
HTML UpdatedFeb 13, 2025 -
cveseeker Public
๐ Vulnerability assessment and vulnerability intelligence tool searching for vulnerabilities and exploits using keywords across multiple sources.
-
NetExec Public
Forked from Pennyw0rth/NetExecMIRROR - The Network Execution Tool
Python BSD 2-Clause "Simplified" License UpdatedJan 5, 2025 -
-
subduer Public
๐ฅท Subduer is a subdomain passive reconnaissance tool utilising Playwright and several online providers that gathers subdomains and generates wordlists and reports in multiple formats.
-
shadowgun Public
TODO Automated Webdav + Printerbug Shadow Credentials coercing
Python MIT License UpdatedDec 28, 2024 -
techka Public
Reconnaissance, SOCMINT and OSINT framework.
-
-
-
credsdefault-search Public
๐ญ A web search panel for default credentials that includes a comprehensive dataset. The dataset contains information on services, vendors, systems, OT and IoT devices, routers, and more.
-
phishlookup Public
๐ช๐ Advanced phishing detection, domain name permutation, detecting homograph phishing attacks, typo squatting (and more), and scanning tool.
-
check_proxy.py Public
๐ป Cyber Threat Intelligence suite for creating a list of working proxies that obtains, validates, and checks proxy origins. Supports VMESS, HTTPS, and SOCKS.
-
breachradar-suite Public
Work In Progress ๐ก Cyber Threat Intelligence suite for collecting, processing, and analyzing breaches, credential leaks, tracing their origins, and generating actionable reports.
-
dropperino Public
๐ Single-file Python server for quick upload/download HTTPS file transfers. No dependencies for HTTP; HTTPS requires only 'cryptography' for self-signed SSL certificates.
-
burpr Public
๐พ Burp Suite request parser, used for aid in assessing application security functionality.
-
lockit Public
๐โก An AES256-GCM and ZSTD encryption suite for file encryption, decryption, and secure DoD 5220.22-M deletion that supports files, directories and stdin-to-stdout pipelines.
-
adhunt Public
๐ฆฎ A cross-platform polyglot lightweight Active Directory overview tool that works everywhere and needs no installation.
-
dropperoni Public
๐ Portable cross-platform file upload/download server and a MITM HTTPS reverse proxy written in Rust.
-
winapi-search Public
๐ Documented and undocumented WinAPI search.
-
Rust-for-Malware-Development Public
Forked from 5l1v3r1/Rust-for-Malware-DevelopmentThis repository contains my complete resources and coding practices for malware development using Rust ๐ฆ.
Rust MIT License UpdatedNov 7, 2024 -
eventhorizon Public
๐ ๐ Versatile GEOINT and OSINT tool that allows operators to search for keywords, then visualize events on a map.
-
uplink Public
๐ UPLINK is a Rust lightweight (2MB) tool for file transfer and remote management that uses AES-GCM and Envelope Encryption over WebSockets.
-
-
-
credsdefault-cli Public
Factory-default credentials CLI search to rule them all.
-
credsdefault-dataset Public
Collecting, processing and generating the biggest factory-default credentials dataset.
-
undocumented-winapi-json Public
Undocumented WinAPI collector, collecting functions from various sources. Used for winapi-search project.
-
telegram-encrypt Public
An RSA PKCS1 - AES-256-CBC envelope encryption suite.