
HoneypotBuster
PowerShell module for red teams to detect honeypots, honeytokens, and deception techniques in Active Directory environments, including fake accounts,…

PowerShell module for red teams to detect honeypots, honeytokens, and deception techniques in Active Directory environments, including fake accounts,…

Open source CSPM for Azure - scan for misconfigurations and quantum-unsafe cryptography, map findings to CIS/NIST/ISO27001/SOC2, and fix them with…

Rock-On is a all in one Recon tool that will just get a single entry of the Domain name and do all of the work alone.

Automated Google dorking tool for extracting leaked secrets, personal information, and subdomains from a target domain or individual, outputting…

fork of http://code.google.com/p/dnsmap/source/checkout

Modular subdomain enumeration suite with certificate transparency, DNS brute-force, and API-based discovery. Includes post-enumeration modules for…

Rust-based DNS enumeration and subdomain discovery tool for reconnaissance and penetration testing security assessments.

Static PHP code scanner that detects SQL injection, XSS, SSRF, LFI, command injection, insecure deserialization, and other web vulnerabilities in…

Proof-of-concept exploit for CVE-2026-41940 targeting cPanel, enabling account enumeration, command execution, and interactive shell access on…

80k+ WordPress Nuclei templates, updated daily from Wordfence intel—filter by severity/tags/CVE and scan in one line. 🚀🔒

python script to find vulnerable targets of CVE-2025-32433

Finding vulnerabilities through dumb brute force

Automated Local File Inclusion (LFI) vulnerability scanner with Google Dork search and targeted URL scan modes for web application security testing.

A vulnerability scanner that searches for the CVE-2024-9166 vulnerability on websites, more info about this vulnerability here:…

Security Testing is not as simple as right click > Scan. It's messy, a tough game. What if you had missed to test just that one thing and had to…

All in one tool for Information Gathering, Vulnerability Scanning and Crawling. A must have tool for all penetration testers

Automatic security vulnerability remediation for your code.

This tool allows you to perform OSINT and reconnaissance on an organisation or an individual. It allows one to search 1.4 Billion clear text…