Highlights
- Pro
Stars
debauchee / barrier
Forked from deskflow/deskflowOpen-source KVM software
PingCastle - Get Active Directory Security at 80% in 20% of the time
ScriptSentry finds misconfigured and dangerous logon scripts.
A small tool built to find and fix common misconfigurations in Active Directory Certificate Services.
jshunter is a command-line tool designed for analyzing JavaScript files and extracting endpoints. This tool specializes in identifying sensitive data, such as API endpoints and potential security v…
Collection of useful FRIDA Mobile Scripts
Command-line tool that allows searching and downloading app packages (known as ipa files) from the iOS App Store
Extract GraphQL operations from javascript
NukeAMSI is a powerful tool designed to neutralize the Antimalware Scan Interface (AMSI) in Windows environments.
🤖 A CLI application that automatically prepares Android APK files for HTTPS inspection
403Bypasser is a simple plugin that lets you bypass 403 status code by transforming HTTP requests with custom templates.
GraphQL security auditing script with a focus on performing batch GraphQL queries and mutations
Nginxpwner is a simple tool to look for common Nginx misconfigurations and vulnerabilities.
BGP and RPKI monitoring tool. Pre-configured for real-time detection of visibility loss, RPKI invalid announcements, hijacks, ROA misconfiguration, and more.
Monkey365 provides a tool for security consultants to easily conduct not only Microsoft 365, but also Azure subscriptions and Microsoft Entra ID security configuration reviews.
Active Directory and Internal Pentest Cheatsheets
Scope gathering tool for HackerOne, Bugcrowd, Intigriti, YesWeHack, and Immunefi!
A one-of-a-kind resume builder that keeps your privacy in mind. Completely secure, customizable, portable, open-source and free forever. Try it out today!
Decrypt GlobalProtect configuration and cookie files.
A resource containing all the tools each ransomware gangs uses
A tool for auditing endpoints defined in exposed (Swagger/OpenAPI) definition files.
Certainly is a offensive security toolkit to capture large amounts of traffic in various network protocols in bitflip and typosquat scenarios.