Forbidden Buster is a tool designed to automate various techniques in order to bypass HTTP 401 and 403 response codes …
Spoofy – Program That Checks If A List Of Domains Can Be Spoofed Based On SPF And DMARC Records
Spoofy is a program that checks if a list of domains can be spoofed based on SPF and DMARC records. …
Redeye – A Tool Intended To Help You Manage Your Data During A Pentest Operation
This project was built by pentesters for pentesters. Redeye is a tool intended to help you manage your data during …
Xsubfind3R – A CLI Utility To Find Domain’S Known Subdomains From Curated Passive Online Sources
xsubfind3r is a command-line interface (CLI) utility to find domain’s known subdomains from curated passive online sources. Features Fetches domains …
Xcrawl3R – A CLI Utility To Recursively Crawl Webpages
xcrawl3r is a command-line interface (CLI) utility to recursively crawl webpages i.e systematically browse webpages’ URLs and follow links to …
Xurlfind3R – A CLI Utility To Find Domain’S Known URLs From Curated Passive Online Sources
xurlfind3r is a command-line interface (CLI) utility to find domain’s known URLs from curated passive online sources. Features Fetches URLs …
SSTImap – Automatic SSTI Detection Tool With Interactive Interface
SSTImap is a penetration testing software that can check websites for Code Injection and Server-Side Template Injection vulnerabilities and exploit …
Villain – Windows And Linux Backdoor Generator And Multi-Session Handler That Allows Users To Connect With Sibling Servers And Share Their Backdoor Sessions
Villain is a Windows & Linux backdoor generator and multi-session handler that allows users to connect with sibling servers (other …
Cloudfox – Automating Situational Awareness For Cloud Penetration Tests
CloudFox helps you gain situational awareness in unfamiliar cloud environments. It’s an open source command line tool created to help …
Second-Order – Subdomain Takeover Scanner
Scans web applications for second-order subdomain takeover by crawling the app, and collecting URLs (and other data) that match certain …