Scan for publicly accessible assets on your AWS environment Services covered by this tool: AWS ELB API Gateway S3 Buckets …

Scan for publicly accessible assets on your AWS environment Services covered by this tool: AWS ELB API Gateway S3 Buckets …
A Workflow Engine For Offensive Security Installation NOTE that you need some essential tools like curl, wget, git, zip and …
Authz0 is an automated authorization test tool. Unauthorized access can be identified based on URLs and Roles & Credentials. URLs …
njsscan is a static application testing (SAST) tool that can find insecure code patterns in your node.js applications using simple …
A distributed list of bad actor IP addresses and phone numbers collected via a SIP Honeypot. Introduction This is basically …
Mininode is a CLI tool to reduce the attack surface of the Node.js applications by using static analysis of source …
Scans web applications for second-order subdomain takeover by crawling the app, and collecting URLs (and other data) that match certain …
Pwndora is a massive and fast IPv4 address range scanner, integrated with multi-threading. Using sockets, it analyzes which ports are …
Token Universe is an advanced tool that provides a wide range of possibilities to research Windows security mechanisms. It has …
For educational, authorized and/or research purposes only. o365spray a username enumeration and password spraying tool aimed at Microsoft Office 365 …