Ross ROSS = Recommend OSS · open-source software intelligence for agents

function: penetration-testing

859 products, primary matches first, then adoption-weighted; health v2 shown.

ProductHealth v2StarsMaturity
shr3ddersec/Shr3dKit
Shr3dKit is a shell script that installs a large curated collection of red team and offensive security tools onto a Kali Linux system (hard…
321131maintenance
hausec/ADAPE-Script
A PowerShell script that automates Active Directory assessment and privilege escalation checks by bundling multiple well-known pentest modu…
321125maintenance
GreatSCT/GreatSCT
GreatSCT is a Python-based framework that generates metasploit payloads designed to bypass antivirus and application whitelisting solutions…
101123maintenance
1n7erface/Template
Template is a heuristic intranet scanning CLI tool built for red team operations, combining host discovery, port scanning, web fingerprinti…
231121maintenance
JoelGMSec/AutoRDPwn
AutoRDPwn is a PowerShell post-exploitation framework that automates the RDP Shadow attack on Windows, letting an attacker view or control …
321118maintenance
hash3liZer/WiFiBroot
WiFiBroot is a Python 2 command-line tool for wireless (WPA/WPA2) penetration testing that captures and cracks 4-way handshakes and PMKID k…
231114maintenance
wireghoul/dotdotpwn
DotDotPwn is a flexible directory traversal fuzzer written in Perl that discovers path traversal vulnerabilities in HTTP, FTP, and TFTP ser…
231114maintenance
awake1t/PortBrute
A compact cross-platform brute-force tool written in Go that attempts password attacks against FTP, SSH, SMB, MSSQL, MySQL, PostgreSQL, and…
321111maintenance
prateek147/DVIA-v2
Damn Vulnerable iOS App (DVIA-v2) is a deliberately vulnerable iOS application written in Swift for practicing iOS penetration testing. It …
231111maintenance
calebstewart/CVE-2021-1675
A pure PowerShell proof-of-concept exploit for CVE-2021-1675 (PrintNightmare), a Windows Print Spooler local privilege escalation vulnerabi…
321109maintenance
tevora-threat/SharpView
SharpView is a C#/.NET port of the PowerView PowerShell script for Active Directory domain enumeration and reconnaissance. It exposes Power…
321108maintenance
curi0usJack/luckystrike
LuckyStrike is a PowerShell-based utility for generating malicious Microsoft Office macro documents, intended for penetration testing and e…
101108maintenance
dark-lbp/isf
ISF (Industrial Exploitation Framework) is a Python-based exploitation framework modeled after Metasploit, focused on industrial control sy…
101105maintenance
endgameinc/RTA
Red Team Automation (RTA) is a Python framework of scripts that emulate malicious tradecraft modeled after the MITRE ATT&CK matrix, letting…
321095maintenance
M4sc3r4n0/Evil-Droid
Evil-Droid is a shell-based framework that creates, generates, and embeds APK payloads for penetrating Android platforms, built on top of t…
231094maintenance
JackOfMostTrades/gadgetinspector
A Java bytecode analyzer that automatically discovers deserialization gadget chains in Java libraries and application classpaths. It produc…
321090maintenance
Accenture/Spartacus
Spartacus is a Windows toolkit that automates discovery and exploitation of DLL and COM hijacking vulnerabilities by parsing Process Monito…
101085maintenance
pentestmonkey/unix-privesc-check
A single shell script that audits Unix systems for misconfigurations allowing local privilege escalation. It can be uploaded and run direct…
321082maintenance
dirkjanm/PrivExchange
PrivExchange is a set of Python proof-of-concept tools that abuse Exchange Web Services push notifications to relay authentication and esca…
321077maintenance
wireghoul/htshells
A collection of self-contained .htaccess files that turn Apache servers into web shells or launch various attacks when uploaded. It include…
321076maintenance
admintony/Prepare-for-AWD
A collection of Python and PHP scripts for AWD (Attack with Defense) CTF competitions, including batch attack scripts for planting and trig…
321075maintenance
antonioCoco/SharPyShell
SharPyShell is a Python tool that generates a tiny, obfuscated ASP.NET webshell for C# web applications on .NET Framework and provides an i…
231072maintenance
c0ny1/jsEncrypter
A Burp Suite extension that uses PhantomJS to invoke front-end JavaScript encryption functions on payloads, enabling fuzzing and brute-forc…
231069maintenance
ZHacker13/ReverseTCPShell
A PowerShell-based ReverseTCP shell framework that provides a command-and-control (C2) server with modules for remote host information gath…
321067maintenance
safebuffer/sam-the-admin
A Python CLI exploit tool that chains CVE-2021-42278 and CVE-2021-42287 to impersonate a Domain Admin from a standard Active Directory doma…
321067maintenance
0xbadjuju/Tokenvator
Tokenvator is a C# command-line tool for manipulating Windows tokens to elevate privileges, such as stealing a SYSTEM token from a running …
231067maintenance
raddyfiy/caidao-official-version
An archive of the official versions of 'China Chopper' (中国菜刀), a well-known webshell management client, with archived download snapshots an…
231063maintenance
AHXR/ghost
Ghost is a lightweight Remote Access Trojan (RAT) written in C++ that gives an attacker silent remote command-line access to Windows machin…
231058maintenance
Abacus-Group-RTO/legion
Legion is an open-source, semi-automated network penetration testing framework with a graphical interface, forked from Sparta. It orchestra…
101057maintenance
rastating/wordpress-exploit-framework
A Ruby framework for penetration testing WordPress installations, providing a console with loadable exploit and payload modules. It is dist…
101046maintenance
OffensivePython/Saddam
Saddam is a Python command-line tool that performs DDoS amplification attacks using DNS, NTP, SNMP, and SSDP reflection vectors. It can als…
321045maintenance
thomasxm/BOAZ_beta
BOAZ is a multilayered AV/EDR evasion framework written in C++/C with Python linking, designed to generate polymorphic payloads that bypass…
571042maintenance
TryCatchHCF/DumpsterFire
DumpsterFire is a modular, menu-driven, cross-platform Python toolset for building repeatable, time-delayed, distributed security events. I…
231039maintenance
adi0x90/attifyos
Attify OS is a Linux distribution based on Ubuntu 18.04 pre-configured with tools for security assessment and penetration testing of IoT de…
321037maintenance
averagesecurityguy/scripts
A collection of Python scripts written for use during penetration testing engagements, organized into categories like brute forcing, enumer…
321033maintenance
blasty/CVE-2021-3156
A proof-of-concept exploit for CVE-2021-3156 (Baron Samedit), a heap-based buffer overflow in sudo. It is a C command-line tool that escala…
321022maintenance
Ridter/noPac
A Python CLI exploit tool that chains CVE-2021-42278 and CVE-2021-42287 to escalate from a standard Active Directory domain user to Domain …
321021maintenance
b4rtik/SharpKatz
SharpKatz is a C# port of mimikatz's credential extraction commands, including sekurlsa::logonpasswords, sekurlsa::ekeys, and lsadump::dcsy…
321021maintenance
mdsecactivebreach/CACTUSTORCH
CACTUSTORCH is a payload generation tool that produces JavaScript, VBScript, and VBA shellcode launchers for adversary simulations. It spaw…
321017maintenance
quentinhardy/msdat
MSDAT is an open-source Python penetration testing tool for remotely testing the security of Microsoft SQL Server databases. It supports cr…
321016maintenance
secretsquirrel/BDFProxy
BDFProxy is a man-in-the-middle proxy that patches downloaded binaries on the fly by embedding payloads, combining the Backdoor Factory wit…
321015maintenance
b3-v3r/Hunner
Hunner is a Python-based hacking framework for penetration testing that combines vulnerability scanning (SQL injection, XSS), denial-of-sit…
321012maintenance
feihong-cs/Java-Rce-Echo
A collection of Java test code for achieving command output echo after remote code execution (RCE) across common application servers and pl…
321008maintenance
hackerxphantom/HACK-CAMERA
A Bash-based penetration-testing tool that hosts a phishing page which requests camera access and captures webcam shots from targets who op…
231008maintenance
stormshadow07/HackTheWorld
A Python CLI script that generates Windows payloads designed to evade antivirus detection, integrating with Metasploit and mingw-w64 for co…
321005maintenance
maaaaz/thc-hydra-windows
A Windows-compiled distribution of THC-HYDRA, the popular network login brute-forcing tool, bundled with Cygwin DLLs and optional SSH, MySQ…
231004maintenance
Armur-Ai/Pentest-Swarm-AI
An open-source autonomous penetration testing application that orchestrates a swarm of AI agents (recon, classification, exploitation, repo…
752381experimental
m4ll0k/BBTz
A collection of bug bounty tools and example scripts written in Python by security researcher m4ll0k. It serves as a set of ideas and refer…
321909experimental
MSNightmare/RoguePlanet
RoguePlanet is a proof-of-concept exploit for a Windows Defender vulnerability written in C++. It uses a race condition (triggered via ISO …
521618experimental
TarlogicSecurity/BlueSpy
BlueSpy is a Python proof-of-concept tool that records and replays audio from vulnerable Bluetooth devices by exploiting pairing without us…
611612experimental
faizann24/wifi-bruteforcer-fsecurify
An Android application that attempts to brute force WiFi passwords without requiring a rooted device. It is written in Java and distributed…
321486experimental
achuna33/MYExploit
MYExploit is a Java-based one-click scanning and exploitation tool targeting OA (office automation) enterprise products, built as an extens…
231485experimental
chompie1337/SMBGhost_RCE_PoC
A Python proof-of-concept exploit for CVE-2020-0796 (SMBGhost), achieving pre-authentication remote code execution against vulnerable Windo…
321395experimental
blackhillsinfosec/WifiForge
WifiForge is a Python-based training framework from Black Hills InfoSec that simulates Wi-Fi networks using mininet-wifi so pentesters can …
701184experimental
berylliumsec/nebula
Nebula is an AI-powered penetration testing desktop application that combines a terminal, browser, notes, findings, and reporting into one …
921097experimental
koutto/jok3r
Jok3r is a Python3 CLI framework that automates network and web black-box penetration testing by chaining 50+ open-source security tools. I…
321087experimental
ZeroMemoryEx/Terminator
Terminator is a C++ proof-of-concept tool that terminates EDR/XDR/antivirus processes on Windows by abusing the vulnerable, signed zam64.sy…
201061experimental
hackerxphantom/Facebook_hack
A Python command-line tool that performs brute-force password attacks against Facebook accounts using an email or profile ID as the target,…
101038experimental
fikrado/fikrado.py
A Python 2.7 command-line script that attempts to gain access to Facebook accounts via the Facebook API using brute-force techniques. It ta…
231035experimental
PowerShellMafia/PowerSploit
PowerSploit is a collection of PowerShell modules for post-exploitation tasks during penetration tests, covering code execution, persistenc…
1013085abandoned
aliasrobotics/cai
Cybersecurity AI (CAI) is an open-source Python framework of specialized AI agents for offensive security tasks such as penetration testing…
109810abandoned
byt3bl33d3r/CrackMapExec
CrackMapExec is a Python-based command-line swiss army knife for pentesting Windows and Active Directory networks, supporting protocols lik…
109159abandoned
EmpireProject/Empire
Empire is a post-exploitation framework with a pure PowerShell Windows agent and a pure Python Linux/OS X agent, offering encrypted communi…
107863abandoned
aquasecurity/kube-hunter
kube-hunter is a Python-based tool that hunts for security weaknesses and vulnerabilities in Kubernetes clusters, running remotely, on a ma…
235078abandoned
unCaptcha
unCaptcha2 is a Python-based security research tool that defeats Google's ReCaptcha v2 audio challenges by submitting the audio to free spe…
324917abandoned
zhzyker/exphub
Exphub is a collection of standalone Python, Java, PHP, and shell exploit scripts for known CVE vulnerabilities in products like Weblogic, …
324291abandoned
Arachni/arachni
Arachni is a modular, high-performance Ruby framework for scanning web applications for security vulnerabilities, including XSS and SQL inj…
104039abandoned
offensive-security/kali-nethunter
Kali NetHunter is an Android ROM overlay providing a mobile penetration testing platform, combining a custom kernel, a Kali Linux chroot, a…
103806abandoned
cSploit/android
cSploit is an open-source Android network analysis and penetration testing suite for rooted devices, integrating Metasploit RPC, MITM attac…
233648abandoned
NewEraCracker/LOIC
LOIC (Low Orbit Ion Cannon) is an open-source network stress testing tool written in C#, based on Praetox's original LOIC. It supports TCP/…
102967abandoned
optiv/ScareCrow
ScareCrow is a Go-based payload creation framework designed to bypass EDR (Endpoint Detection and Response) and application whitelisting co…
102890abandoned
DanMcInerney/LANs.py
A Python-based penetration testing tool that scans WiFi networks for active clients, performs targeted ARP spoofing, and intercepts or inje…
322630abandoned
evilsocket/bettercap
bettercap is a network attack and reconnaissance framework, described as a Swiss Army knife for WiFi, BLE, HID hijacking, CAN-bus, and IPv4…
102490abandoned
Marten4n6/EvilOSX
EvilOSX is a Remote Administration Tool (RAT) for macOS/OS X written in pure Python, with a server providing both GUI and CLI interfaces an…
322415abandoned
codebutler/firesheep
Firesheep is a Firefox extension that demonstrates HTTP session hijacking attacks by sniffing unencrypted Wi-Fi traffic and capturing sessi…
322352abandoned
sevagas/macro_pack
macro_pack is a Python CLI tool that automates obfuscation and generation of MS Office documents, VBA/VBS scripts, shortcuts, and other for…
102307abandoned
secgroundzero/warberry
WarBerryPi is a tactical exploitation toolkit built to run on a Raspberry Pi, acting as a drop-box/implant for red-team engagements to scan…
322220abandoned
PowerShellEmpire/PowerTools
PowerTools is a collection of PowerShell projects focused on offensive security operations, including tools like PowerView, PowerUp, PowerP…
232204abandoned
AdrMXR/KitHack
KitHack is a Python-based framework that automates downloading and installing a curated pack of penetration testing tools, organized into c…
262085abandoned
yahoo/gryffin
Gryffin is a large-scale web security scanning platform written in Go, built on a publisher-subscriber architecture for horizontal scaling.…
102052abandoned
rasta-mouse/Sherlock
Sherlock is a PowerShell script that identifies missing software patches for known Windows local privilege escalation vulnerabilities. It i…
102020abandoned
Fadi002/unshackle
Unshackle is a bootable Linux-based ISO that resets or bypasses Windows and Linux user login passwords from a USB drive. It works offline b…
101981abandoned
feihong-cs/ShiroExploit-Deprecated
A Java-based one-click exploitation tool for Apache Shiro vulnerabilities Shiro550 (hardcoded key) and Shiro721 (Padding Oracle), supportin…
231956abandoned
Veil-Framework/Veil-Evasion
Veil-Evasion is a Python tool that generates Metasploit payloads designed to bypass common antivirus solutions, optionally compiling them i…
101840abandoned
samyk/skyjack
SkyJack is a drone hacking tool that autonomously seeks out, disconnects the owner of, and takes wireless control of nearby Parrot AR.Drone…
321831abandoned
govolution/avet
AVET (AntiVirus Evasion Tool) is a shell-based toolbox for pentesters to build Windows executables that evade antivirus detection, using te…
401755abandoned
DesignativeDave/androrat
Androrat is a client/server Remote Administration Tool for Android devices, with the client written in Java Android and the server in Java/…
321634abandoned
asLody/legend
Legend is a Java method hooking framework for Android that works without root access, supporting both Dalvik and ART runtimes. It lets deve…
321605abandoned
carmaa/inception
Inception is a Python-based physical memory manipulation tool that exploits PCI-based DMA (over FireWire, Thunderbolt, ExpressCard, PC Card…
341602abandoned
chinoogawa/fbht
A Python 2 command-line tool for interacting with and scraping Facebook accounts, including graph-based analysis of social connections. It …
231591abandoned
byt3bl33d3r/SprayingToolkit
A set of Python 3 scripts for performing fast password spraying attacks against Lync/Skype for Business, OWA, IMAP, and Office 365, built o…
101576abandoned
SofianeHamlaoui/Lockdoor-Framework
Lockdoor Framework is a Python-based penetration testing framework that bundles a curated selection of security tools (information gatherin…
341549abandoned
D4Vinci/Dr0p1t-Framework
Dr0p1t-Framework is a Python-based penetration testing framework that generates stealthy Windows dropper executables designed to bypass ant…
101473abandoned
Lucifer1993/AngelSword
AngelSword is a simple CMS vulnerability detection framework written in Python3, designed to help security engineers quickly discover known…
321441abandoned
ReversecLabs/needle
Needle is an open-source, modular Python framework for streamlining security assessments of iOS applications, covering areas like data stor…
101401abandoned
byt3bl33d3r/gcat
Gcat is a proof-of-concept Python backdoor that uses a Gmail account as its command-and-control channel, with an implant deployed on target…
101351abandoned
WWILLV/GodOfHacker
GodOfHacker is a satirical C# 'hacker all-in-one tool' whose feature list is intentionally absurd (one-click 0day attacks, stealing QQ acco…
231340abandoned
hackappcom/ibrute
A Python proof-of-concept tool that brute-forces AppleID passwords via the Find My iPhone service API, which lacked bruteforce protection. …
321322abandoned
elvanderb/TCP-32764
A collection of Python proof-of-concept code and research notes documenting a hidden backdoor listening on TCP port 32764 in Linksys, Netge…
321291abandoned
clymb3r/PowerShell
A collection of useful PowerShell scripts, most notably security and penetration testing tools that were contributed to PowerSploit. The re…
321284abandoned

← prev page 8 / 9 next →