Projects in Awesome Lists tagged with penetration-testing
A curated list of projects in awesome lists tagged with penetration-testing .
https://swisskyrepo.github.io/PayloadsAllTheThings/
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
bounty bugbounty bypass cheatsheet enumeration hacking hacktoberfest methodology payload payloads penetration-testing pentest privilege-escalation redteam security vulnerability web-application
Last synced: 14 Jul 2025
https://github.com/swisskyrepo/payloadsallthethings
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
bounty bugbounty bypass cheatsheet enumeration hacking hacktoberfest methodology payload payloads penetration-testing pentest privilege-escalation redteam security vulnerability web-application
Last synced: 12 May 2025
https://github.com/swisskyrepo/PayloadsAllTheThings
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
bounty bugbounty bypass cheatsheet enumeration hacking hacktoberfest methodology payload payloads penetration-testing pentest privilege-escalation redteam security vulnerability web-application
Last synced: 14 Mar 2025
https://github.com/Sundowndev/hacker-roadmap
A collection of hacking tools, resources and references to practice ethical hacking.
exploitation frameworks hacking hacking-tool hacktools information-gathering penetration-testing pentest pentesting post-exploitation roadmap security web-hacking
Last synced: 13 Mar 2025
https://github.com/sundowndev/hacker-roadmap
A collection of hacking tools, resources and references to practice ethical hacking.
exploitation frameworks hacking hacking-tool hacktools information-gathering penetration-testing pentest pentesting post-exploitation roadmap security web-hacking
Last synced: 29 Sep 2025
https://github.com/maurosoria/dirsearch
Web path scanner
appsec brute bug-bounty bugbounty dirsearch enumeration fuzzer fuzzing hacking hacking-tool infosec penetration-testing pentest-tool pentesting python red-teaming redteam scanner security wordlist
Last synced: 14 May 2025
https://github.com/datalux/osintgram
Osintgram is a OSINT tool on Instagram. It offers an interactive shell to perform analysis on Instagram account of any users by its nickname
analysis hacking information-gathering instagram instagram-account instagram-api nickname osint osint-python penetration-testing python python3 tool
Last synced: 13 May 2025
https://github.com/Datalux/Osintgram
Osintgram is a OSINT tool on Instagram. It offers an interactive shell to perform analysis on Instagram account of any users by its nickname
analysis hacking information-gathering instagram instagram-account instagram-api nickname osint osint-python penetration-testing python python3 tool
Last synced: 03 Apr 2025
https://github.com/samratashok/nishang
Nishang - Offensive PowerShell for red team, penetration testing and offensive security.
activedirectory hacking infosec nishang penetration-testing powershell red-team redteam security
Last synced: 13 May 2025
https://github.com/1n3/sn1per
Attack Surface Management Platform
attack-surface attack-surface-management attacksurface bugbounty-platform cybersecurity hacking hacking-tools osint-framework osint-tool penetration-testing pentest-scripts pentest-tool pentest-tools pentesting pentesting-tools security security-tools sn1per sn1per-professional
Last synced: 11 May 2025
https://github.com/1N3/Sn1per
Attack Surface Management Platform
attack-surface attack-surface-management attacksurface bugbounty-platform cybersecurity hacking hacking-tools osint-framework osint-tool penetration-testing pentest-scripts pentest-tool pentest-tools pentesting pentesting-tools security security-tools sn1per sn1per-professional
Last synced: 24 Mar 2025
https://github.com/we5ter/scanners-box
A powerful and open-source toolkit for hackers and security automation - 安全行业从业者自研开源扫描器合辑
apk-analysis binary-analysis code-analyzer devsecops exploitation-framework hacker-tools information-security malware-analysis penetration-testing pentesting-tools privacy-compliance redteam-tools security-audit security-automation smart-contracts static-analysis vulnerability-scanners wifi-hacking wifi-security
Last synced: 06 Oct 2025
https://github.com/We5ter/Scanners-Box
A powerful and open-source toolkit for hackers and security automation - 安全行业从业者自研开源扫描器合辑
apk-analysis binary-analysis code-analyzer devsecops exploitation-framework hacker-tools information-security malware-analysis penetration-testing pentesting-tools privacy-compliance redteam-tools security-audit security-automation smart-contracts static-analysis vulnerability-scanners wifi-hacking wifi-security
Last synced: 30 Mar 2025
https://github.com/greydgl/pentestgpt
A GPT-empowered penetration testing tool
large-language-models llm penetration-testing python
Last synced: 11 May 2025
https://github.com/GreyDGL/PentestGPT
A GPT-empowered penetration testing tool
large-language-models llm penetration-testing python
Last synced: 15 Mar 2025
https://github.com/yogeshojha/rengine
reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines, recon data correlation and organization, continuous monitoring, backed by a database, and simple yet intuitive User Interface. reNgine makes it easy for penetration testers to gather reconnaissance with minimal configuration and with the help of reNgine's correlation, it just makes recon effortless.
bug-bounty bugbounty hacking information-gathering infosec osint penetration-testing pentesting recon recon-engine reconnaissance rengine scanner scanner-web scanning security-tools
Last synced: 05 Apr 2025
https://github.com/owasp/wstg
The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.
application-security appsec best-practices bugbounty guide hacking hacktoberfest owasp penetration-testing pentesting security
Last synced: 26 Mar 2025
https://github.com/OWASP/wstg
The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.
application-security appsec best-practices bugbounty guide hacking hacktoberfest owasp penetration-testing pentesting security
Last synced: 30 Mar 2025
https://github.com/mandiant/commando-vm
Complete Mandiant Offensive VM (Commando VM), a fully customizable Windows-based pentesting virtual machine distribution. commandovm@mandiant.com
fireeye-flare penetration-testing red-teaming windows
Last synced: 09 Apr 2025
https://github.com/guardicore/monkey
Infection Monkey - An open-source adversary emulation platform
adversary-emulation infection-monkey penetration-testing security-automation security-tools
Last synced: 12 May 2025
https://github.com/mr-xn/penetration_testing_poc
渗透测试有关的POC、EXP、脚本、提权、小工具等---About penetration-testing python-script poc getshell csrf xss cms php-getshell domainmod-xss csrf-webshell cobub-razor cve rce sql sql-poc poc-exp bypass oa-getshell cve-cms
authentication-bypass bypass cobalt-strike csrf csrf-webshell cve cve-cms exploit getshell oa-getshell penetration-testing penetration-testing-poc php-bypass poc poc-exp rce sql-getshell sql-poc thinkphp
Last synced: 27 Mar 2025
https://github.com/Mr-xn/Penetration_Testing_POC
渗透测试有关的POC、EXP、脚本、提权、小工具等---About penetration-testing python-script poc getshell csrf xss cms php-getshell domainmod-xss csrf-webshell cobub-razor cve rce sql sql-poc poc-exp bypass oa-getshell cve-cms
authentication-bypass bypass cobalt-strike csrf csrf-webshell cve cve-cms exploit getshell oa-getshell penetration-testing penetration-testing-poc php-bypass poc poc-exp rce sql-getshell sql-poc thinkphp
Last synced: 13 Mar 2025
https://github.com/a-poc/redteam-tools
Tools and Techniques for Red Team / Penetration Testing
cheatsheet cybersecurity enumeration hacking linux mitre-attack payload penetration-testing pentest pentest-tools red-team red-team-tools redteam resources security-tools tools windows
Last synced: 13 May 2025
https://github.com/trickest/cve
Gather and update all available and newest CVEs with their PoC.
cve cve-poc exploit hacking infosec latest-cve penetration-testing pentesting poc red-team security security-tools software-security software-vulnerabilities software-vulnerability vulnerabilities vulnerability
Last synced: 17 Oct 2025
https://github.com/six2dez/reconftw
reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities
bug-bounty bugbounty dns fuzzing hacking nuclei osint penetration-testing pentest pentest-tool pentesting recon reconnaissance scanner security security-tools subdomain vulnerabilities
Last synced: 13 May 2025
https://github.com/daffainfo/AllAboutBugBounty
All about bug bounty (bypasses, payloads, and etc)
bug bugbounty bugbountytips bypass hacking infosec payload payloads penetration-testing pentest reconnaissance security vulnerability
Last synced: 10 Apr 2025
https://github.com/daffainfo/allaboutbugbounty
All about bug bounty (bypasses, payloads, and etc)
bug bugbounty bugbountytips bypass hacking infosec payload payloads penetration-testing pentest reconnaissance security vulnerability
Last synced: 05 Apr 2025
https://github.com/A-poc/RedTeam-Tools
Tools and Techniques for Red Team / Penetration Testing
cheatsheet cybersecurity enumeration hacking linux mitre-attack payload penetration-testing pentest pentest-tools red-team red-team-tools redteam resources security-tools tools windows
Last synced: 30 Mar 2025
https://github.com/S1ckB0y1337/Active-Directory-Exploitation-Cheat-Sheet
A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.
active-directory active-directory-cheatsheet active-directory-exploitation activedirectory attack cheat cheat-sheet cheatsheet enumeration exploitation hacking hacking-cheasheet hacking-tool hacking-tools penetration-testing pentesting privilege-escalation security windows windows-active-directory
Last synced: 01 Apr 2025
https://github.com/yeahhub/hacking-security-ebooks
Top 100 Hacking & Security E-Books (Free Download)
books ebooks hacking hacking-security-ebooks kali-linux penetration-testing security
Last synced: 31 Aug 2025
https://github.com/s1ckb0y1337/active-directory-exploitation-cheat-sheet
A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.
active-directory active-directory-cheatsheet active-directory-exploitation activedirectory attack cheat cheat-sheet cheatsheet enumeration exploitation hacking hacking-cheasheet hacking-tool hacking-tools penetration-testing pentesting privilege-escalation security windows windows-active-directory
Last synced: 22 Aug 2025
https://github.com/yeahhub/Hacking-Security-Ebooks
Top 100 Hacking & Security E-Books (Free Download)
books ebooks hacking hacking-security-ebooks kali-linux penetration-testing security
Last synced: 13 Mar 2025
https://github.com/rmusser01/infosec_reference
An Information Security Reference That Doesn't Suck; https://rmusser.net/git/admin-2/Infosec_Reference for non-MS Git hosted version.
blueteam forensics hacking hacking-simulator hacktoberfest hacktoberfest2021 information-security infosec infosec-reference linux osx penetration-testing pentesting privilege-escalation privilege-escalation-exploits red-team references reverse-engineering windows
Last synced: 14 May 2025
https://github.com/rmusser01/Infosec_Reference
An Information Security Reference That Doesn't Suck; https://rmusser.net/git/admin-2/Infosec_Reference for non-MS Git hosted version.
blueteam forensics hacking hacking-simulator hacktoberfest hacktoberfest2021 information-security infosec infosec-reference linux osx penetration-testing pentesting privilege-escalation privilege-escalation-exploits red-team references reverse-engineering windows
Last synced: 26 Mar 2025
https://github.com/j3ssie/osmedeus
A Workflow Engine for Offensive Security
attack-surface attack-surface-management bug-bounty bugbounty go golang hacking hacking-tool information-gathering osint penetration-testing pentest-tool pentesting reconnaissance scanning security security-tools
Last synced: 14 May 2025
https://github.com/urbanadventurer/WhatWeb
Next generation web scanner
application-security appsec hacking hacking-tools kali-linux network-security owasp penetration-test penetration-testing penetration-testing-tools pentest pentesting pentesting-tools recon ruby scanner security security-tools web web-hacking
Last synced: 14 Mar 2025
https://github.com/urbanadventurer/whatweb
Next generation web scanner
application-security appsec hacking hacking-tools kali-linux network-security owasp penetration-test penetration-testing penetration-testing-tools pentest pentesting pentesting-tools recon ruby scanner security security-tools web web-hacking
Last synced: 14 May 2025
https://github.com/infobyte/faraday
Open Source Vulnerability Management Platform
appsec burpsuite collaboration continuous-scanning cve cybersecurity devops devsecops infosec nessus nmap orchestration penetration-testing pentesting security security-audit security-automation vulnerability vulnerability-management vulnerability-scanners
Last synced: 12 May 2025
https://github.com/j3ssie/Osmedeus
A Workflow Engine for Offensive Security
attack-surface attack-surface-management bug-bounty bugbounty go golang hacking hacking-tool information-gathering osint penetration-testing pentest-tool pentesting reconnaissance scanning security security-tools
Last synced: 13 Mar 2025
https://github.com/azeemidrisi/phonesploit-pro
An all-in-one hacking tool to remotely exploit Android devices using ADB and Metasploit-Framework to get a Meterpreter session.
adb android android-debug-bridge android-hacking collaborate cybersecurity exploit hack hacking hacking-script hacking-tool hacktoberfest metasploit-framework meterpreter penetration-testing pentest-tool pentesting phonesploit phonesploit-pro python
Last synced: 10 Aug 2025
https://github.com/AzeemIdrisi/PhoneSploit-Pro
An all-in-one hacking tool to remotely exploit Android devices using ADB and Metasploit-Framework to get a Meterpreter session.
adb android android-debug-bridge android-hacking collaborate cybersecurity exploit hack hacking hacking-script hacking-tool hacktoberfest metasploit-framework meterpreter penetration-testing pentest-tool pentesting phonesploit phonesploit-pro python
Last synced: 30 Mar 2025
https://github.com/OlivierLaflamme/Cheatsheet-God
Penetration Testing Reference Bank - OSCP / PTP & PTX Cheatsheet
awesome cheatsheet cheatsheet-god hacking hacking-code hacking-tool howto-tutorial information-security oscp oscp-journey oscp-tools oscp5 penetration penetration-test penetration-testing pentesting refresher security security-tools security-vulnerability
Last synced: 13 Mar 2025
https://github.com/olivierlaflamme/cheatsheet-god
Penetration Testing Reference Bank - OSCP / PTP & PTX Cheatsheet
awesome cheatsheet cheatsheet-god hacking hacking-code hacking-tool howto-tutorial information-security oscp oscp-journey oscp-tools oscp5 penetration penetration-test penetration-testing pentesting refresher security security-tools security-vulnerability
Last synced: 28 Sep 2025
https://github.com/LyleMi/Learn-Web-Hacking
Study Notes For Web Hacking / Web安全学习笔记
hacking penetration-testing pentesting security study-notes web-hacking
Last synced: 04 Apr 2025
https://github.com/lylemi/learn-web-hacking
Study Notes For Web Hacking / Web安全学习笔记
hacking penetration-testing pentesting security study-notes web-hacking
Last synced: 02 Apr 2025
https://github.com/rhinosecuritylabs/pacu
The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.
aws aws-security penetration-testing python security
Last synced: 10 Apr 2025
https://github.com/Hack-with-Github/Free-Security-eBooks
Free Security and Hacking eBooks
cloud-security cyber-security ebooks forensics hackers-handbook hacking hacking-ebooks kali-linux penetration-testing security
Last synced: 25 Mar 2025
https://github.com/RhinoSecurityLabs/pacu
The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.
aws aws-security penetration-testing python security
Last synced: 23 Mar 2025
https://github.com/ullaakut/cameradar
Cameradar hacks its way into RTSP videosurveillance cameras
cameras cctv hacking hacking-tool infosec netsec penetration-testing pentesting rtsp security security-tools
Last synced: 14 May 2025
https://github.com/hack-with-github/free-security-ebooks
Free Security and Hacking eBooks
cloud-security cyber-security ebooks forensics hackers-handbook hacking hacking-ebooks kali-linux penetration-testing security
Last synced: 27 Sep 2025
https://github.com/arismelachroinos/lscript
The LAZY script will make your life easier, and of course faster.
antivirus-evasion bypass-antivirus bypass-av eternalblue-doublepulsar-metasploit kali-linux kali-scripts metasploit-framework payload payload-generator penetration-testing pentest-tool pentesting pixie-dust shell-script sqlinjection wifi-password wifi-testing wifiphisher wpa-cracker wpa2-handshake
Last synced: 15 May 2025
https://github.com/Ullaakut/cameradar
Cameradar hacks its way into RTSP videosurveillance cameras
cameras cctv hacking hacking-tool infosec netsec penetration-testing pentesting rtsp security security-tools
Last synced: 14 Mar 2025
https://github.com/owasp/nettacker
Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management
automation bruteforce cve hacking-tools information-gathering network-security owasp penetration-testing penetration-testing-framework pentesting pentesting-tools portscanner python recon scanner security security-tools vulnerability-management vulnerability-scanner vulnerability-scanners
Last synced: 12 May 2025
https://github.com/t3l3machus/villain
Villain is a high level stage 0/1 C2 framework that can handle multiple reverse TCP & HoaxShell-based shells, enhance their functionality with additional features (commands, utilities) and share them among connected sibling servers (Villain instances running on different machines).
c2 cybersecurity hacking hacking-tool offensive-security open-source penetration-testing penetration-testing-tools pentest pentesting readteaming redteam redteam-tools
Last synced: 13 May 2025
https://github.com/arachni/arachni
Web Application Security Scanner Framework
analysis arachni audit crawler detection dom hack hacking javascript modular penetration-testing ruby scanner scanners security-audit sql-injection vulnerability-detection web-application xss
Last synced: 16 May 2025
https://github.com/Arachni/arachni
Web Application Security Scanner Framework
analysis arachni audit crawler detection dom hack hacking javascript modular penetration-testing ruby scanner scanners security-audit sql-injection vulnerability-detection web-application xss
Last synced: 02 Apr 2025
https://github.com/mishakorzik/allhackingtools
All-in-One Hacking Tools For Hackers! And more hacking tools! For termux.
all-in-one bruteforce cibersecurity ctf-tools ddos-attacks hacking hacking-tool packages password-attack penetration-testing programming sms-bomber termux termux-hacking termux-tool tools web-hacking wireless-attacks xss-attacks xss-detection
Last synced: 14 May 2025
https://github.com/zan8in/afrog
A Security Tool for Bug Bounty, Pentest and Red Teaming.
afrog bug-bounty penetration-testing pentest poc red-teaming vulnerability-scanner vulnerability-scanning-tools
Last synced: 13 May 2025
https://github.com/t3l3machus/Villain
Villain is a high level stage 0/1 C2 framework that can handle multiple reverse TCP & HoaxShell-based shells, enhance their functionality with additional features (commands, utilities) and share them among connected sibling servers (Villain instances running on different machines).
c2 cybersecurity hacking hacking-tool offensive-security open-source penetration-testing penetration-testing-tools pentest pentesting readteaming redteam redteam-tools
Last synced: 30 Mar 2025
https://github.com/techchipnet/camphish
Grab cam shots & GPS location from target's phone front camera or PC webcam just sending a link.
android-hacking camera-hacking gps gps-location gps-tracking hack hacking kali-linux penetration-testing techchip termux
Last synced: 13 Apr 2025
https://github.com/scipag/vulscan
Advanced vulnerability scanning with Nmap NSE
exploit lua lua-script nmap nmap-scan-script nmap-scripts nse nsescript penetration-testing security security-audit security-scanner vulnerability vulnerability-assessment vulnerability-database-entry vulnerability-databases vulnerability-detection vulnerability-identification vulnerability-scanners vulnerability-scanning
Last synced: 14 May 2025
https://github.com/OWASP/Nettacker
Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management
automation bruteforce cve cves hacking-tools information-gathering network-analysis owasp penetration-testing penetration-testing-framework pentesting pentesting-tools portscanner python scanner security security-tools vulnerability-management vulnerability-scanner vulnerability-scanners
Last synced: 23 Mar 2025
https://github.com/mishakorzik/AllHackingTools
All-in-One Hacking Tools For Hackers! And more hacking tools! For termux.
all-in-one bruteforce cibersecurity ctf-tools ddos-attacks hacking hacking-tool packages password-attack penetration-testing programming sms-bomber termux termux-hacking termux-tool tools web-hacking wireless-attacks xss-attacks xss-detection
Last synced: 06 Aug 2025
https://github.com/t3l3machus/hoaxshell
A Windows reverse shell payload generator and handler that abuses the http(s) protocol to establish a beacon-like reverse shell.
hacking open-source penetration-testing pentesting-tools powershell python3 red-teaming reverse-shell
Last synced: 13 May 2025
https://github.com/0xsyr0/OSCP
OSCP Cheat Sheet
cheat-sheet cheatsheet offensive offensive-security offsec oscp oscp-guide oscp-plus penetration-testing pentesting security
Last synced: 29 Apr 2025
https://github.com/techchipnet/CamPhish
Grab cam shots from target's phone front camera or PC webcam just sending a link.
android-hacking camera-hacking hack hacking kali-linux penetration-testing techchip termux
Last synced: 11 Jul 2025
https://github.com/codingo/nosqlmap
Automated NoSQL database enumeration and web application exploitation tool.
bugbounty couchdb databases enumeration hacking hacking-tool hacktoberfest mongodb mongodb-database nosql nosql-databases offensive-security penetration-testing redis scanner security-audit security-tools security-toolset sql-injection web-application-security
Last synced: 10 Apr 2025
https://github.com/codingo/NoSQLMap
Automated NoSQL database enumeration and web application exploitation tool.
bugbounty couchdb databases enumeration hacking hacking-tool hacktoberfest mongodb mongodb-database nosql nosql-databases offensive-security penetration-testing redis scanner security-audit security-tools security-toolset sql-injection web-application-security
Last synced: 28 Mar 2025
https://github.com/0xsyr0/oscp
OSCP Cheat Sheet
cheat-sheet cheatsheet offensive offensive-security offsec oscp oscp-guide oscp-plus penetration-testing pentesting security
Last synced: 24 Feb 2025
https://github.com/samsar4/ethical-hacking-labs
Practical Ethical Hacking Labs 🗡🛡
ethical-hacking-labs hacking linux penetration-testing pentesting security security-tools tutorial tutorials
Last synced: 15 May 2025
https://github.com/Samsar4/Ethical-Hacking-Labs
Practical Ethical Hacking Labs 🗡🛡
ethical-hacking-labs hacking linux penetration-testing pentesting security security-tools tutorial tutorials
Last synced: 05 Apr 2025
https://github.com/jonaslejon/malicious-pdf
💀 Generate a bunch of malicious pdf files with phone-home functionality. Can be used with Burp Collaborator or Interact.sh
bugbounty bugbounty-tool pdf pdf-generation penetration-test penetration-testing penetrationtesting pentesting pentesting-tools python redteam redteaming scanner
Last synced: 14 May 2025
https://github.com/mgeeky/penetration-testing-tools
A collection of more than 170+ tools, scripts, cheatsheets and other loots that I've developed over years for Red Teaming/Pentesting/IT Security audits purposes.
cheatsheets exploit hacking networks penetration penetration-testing pentesting red-teaming redteam scripts security social-engineering testing tools
Last synced: 15 May 2025
https://github.com/e-m-b-a/emba
EMBA - The firmware security analyzer
artificial-intelligence binary-analysis embedded-linux embedded-systems firmware firmware-analysis firmware-tools hacking infosec iot linux penetration-testing pentesting reverse-engineering sbom security security-tools static-analyzer vulnerability-scanner vulnerability-scanners
Last synced: 14 May 2025
https://github.com/mgeeky/Penetration-Testing-Tools
A collection of more than 170+ tools, scripts, cheatsheets and other loots that I've developed over years for Red Teaming/Pentesting/IT Security audits purposes.
cheatsheets exploit hacking networks penetration penetration-testing pentesting red-teaming redteam scripts security social-engineering testing tools
Last synced: 30 Mar 2025
https://github.com/opsdisk/the_cyber_plumbers_handbook
Free copy of The Cyber Plumber's Handbook - The definitive guide to Secure Shell (SSH) tunneling, port redirection, and bending traffic like a boss.
blueteam kali lateral-movement oscp penetration-testing pivoting proxychains redteam socks5 ssh tunneling
Last synced: 24 Mar 2025
https://github.com/flipkart-incubator/astra
Automated Security Testing For REST API's
ci-cd owasp penetration-testing penetration-testing-framework postman-collection python restapiautomation sdlc security security-automation
Last synced: 15 May 2025
https://github.com/gkbrk/slowloris
Low bandwidth DoS tool. Slowloris rewrite in Python.
dos dos-attack penetration-testing pentesting slowloris
Last synced: 14 May 2025
https://github.com/voorivex/pentest-guide
Penetration tests guide based on OWASP including test cases, resources and examples.
bugbounty bypass owasp-tests payload penetration-testing pentest vulnerability writeup
Last synced: 23 Mar 2025
https://github.com/flipkart-incubator/Astra
Automated Security Testing For REST API's
ci-cd owasp penetration-testing penetration-testing-framework postman-collection python restapiautomation sdlc security security-automation
Last synced: 26 Mar 2025
https://github.com/Integration-IT/Active-Directory-Exploitation-Cheat-Sheet
A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.
active-directory active-directory-cheatsheet active-directory-exploitation cheat-sheet cheatsheet enumeration exploitation hacking hacking-cheasheet hacking-tool hacking-tools infosec penetration-testing pentesting powershell privilege-escalation security windows windows-active-directory
Last synced: 02 Apr 2025
https://github.com/Voorivex/pentest-guide
Penetration tests guide based on OWASP including test cases, resources and examples.
bugbounty bypass owasp-tests payload penetration-testing pentest vulnerability writeup
Last synced: 12 Mar 2025
https://github.com/rewardone/oscprepo
A list of commands, scripts, resources, and more that I have gathered and attempted to consolidate for use as OSCP (and more) study material. Commands in 'Usefulcommands' Keepnote. Bookmarks and reading material in 'BookmarkList' CherryTree. Reconscan Py2 and Py3. Custom ISO building.
oscp penetration-testing pentest reconscan
Last synced: 15 May 2025
https://github.com/integration-it/active-directory-exploitation-cheat-sheet
A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.
active-directory active-directory-cheatsheet active-directory-exploitation cheat-sheet cheatsheet enumeration exploitation hacking hacking-cheasheet hacking-tool hacking-tools infosec penetration-testing pentesting powershell privilege-escalation security windows windows-active-directory
Last synced: 27 Feb 2025
https://github.com/rewardone/OSCPRepo
A list of commands, scripts, resources, and more that I have gathered and attempted to consolidate for use as OSCP (and more) study material. Commands in 'Usefulcommands' Keepnote. Bookmarks and reading material in 'BookmarkList' CherryTree. Reconscan Py2 and Py3. Custom ISO building.
oscp penetration-testing pentest reconscan
Last synced: 19 Apr 2025
https://github.com/pwndoc/pwndoc
Pentest Report Generator
audit collaboration infosec penetration-testing pentest pentesting-tool reporting reporting-tool security security-audit security-tool vulnerabilities
Last synced: 14 May 2025
https://github.com/theporgs/exegol
Fully featured and community-driven hacking environment
ctf docker hacking linux penetration-testing pentesting python
Last synced: 13 May 2025
https://github.com/ThePorgs/Exegol
Fully featured and community-driven hacking environment
ctf docker hacking linux penetration-testing pentesting python
Last synced: 14 Apr 2025
https://github.com/gh0stkey/web-fuzzing-box
Web Fuzzing Box - Web 模糊测试字典与一些Payloads
bugbounty fuzz fuzzing hacking penetration-testing pentesting
Last synced: 26 Mar 2025
https://github.com/OWASP/masvs
The OWASP MASVS (Mobile Application Security Verification Standard) is the industry standard for mobile app security.
android-app audit gitbook ios-app mastg masvs mobile mstg owasp penetration-testing penetration-tests security security-audit security-standards standard verification
Last synced: 18 Jul 2025
https://github.com/codingo/reconnoitre
A security tool for multithreaded information gathering and service enumeration whilst building directory structures to store results, along with writing out recommendations for further testing.
discover-services enumeration hacking hacking-tool kali-linux nmap offensive-security oscp penetration-testing range scanner scanning security security-audit security-scanner security-tools service-enumeration services-discovered snmp virtual-hosts
Last synced: 15 May 2025
https://github.com/codingo/Reconnoitre
A security tool for multithreaded information gathering and service enumeration whilst building directory structures to store results, along with writing out recommendations for further testing.
discover-services enumeration hacking hacking-tool kali-linux nmap offensive-security oscp penetration-testing range scanner scanning security security-audit security-scanner security-tools service-enumeration services-discovered snmp virtual-hosts
Last synced: 30 Mar 2025
https://github.com/gh0stkey/Web-Fuzzing-Box
Web Fuzzing Box - Web 模糊测试字典与一些Payloads
bugbounty fuzz fuzzing hacking penetration-testing pentesting
Last synced: 15 May 2025
https://github.com/OWASP/owasp-masvs
The OWASP MASVS (Mobile Application Security Verification Standard) is the industry standard for mobile app security.
android-app audit gitbook ios-app mastg masvs mobile mstg owasp penetration-testing penetration-tests security security-audit security-standards standard verification
Last synced: 26 Mar 2025
https://github.com/safebuffer/vulnerable-ad
Create a vulnerable active directory that's allowing you to test most of the active directory attacks in a local lab
active-directory penetration-testing powershell redteaming vulnerable-activedirectory vulnerable-ad
Last synced: 15 May 2025
https://github.com/sabri-zaki/easy_hack
Hack the World using Termux
apache2 bash-script easy-hack gnuroot-debian-terminal hackers metasploit metasploit-framework network-analysis ngrok nmap penetration-testing penetration-testing-framework python sqlmap termux termux-hacking termux-recommended-for-android termux-tool web-application
Last synced: 21 Jun 2025
https://github.com/WazeHell/vulnerable-AD
Create a vulnerable active directory that's allowing you to test most of the active directory attacks in a local lab
active-directory penetration-testing powershell redteaming vulnerable-activedirectory vulnerable-ad
Last synced: 02 May 2025
https://github.com/hacking-the-cloud/hackingthe.cloud
An encyclopedia for offensive and defensive security knowledge in cloud native technologies.
aws aws-hacking azure cloud cloud-security gcp hacking hacking-cloud penetration-testing
Last synced: 14 May 2025
https://github.com/cedarctic/digispark-scripts
USB Rubber Ducky type scripts written for the DigiSpark.
badusb digispark digispark-scripts ducky-payloads hacktoberfest penetration-testing scripts sketches usb usb-hid usb-rubber-ducky
Last synced: 15 May 2025