Pentesting

Tools and resources for penetration testing.

921 tools in this category
Showing 921 of 921 tools
![
From CrackMapExec
![
From CrackMapExec
![
From CrackMapExec
![
From CrackMapExec
![
From CrackMapExec
![asciicast
From Ffuf
![asciicast
From Ffuf
![Backers
From Gobuster
![Black Hills Information Security
From recon-ng
![Build Status
From VHostScan
![Build Status
From Metrodroid
![Build Status
From Wifiphisher
![Build Status
From TikTok API
![Donate
From MIFARE Classic Tool (MCT)
![https://raw.githubusercontent.com/savio-code/savio-project-images/master/Fern/shadow_case.png
From Fern WiFi Cracker
![Open in Cloud Shell
From HackCCTV
![OWASP Logo
From Amass
![Practical Security Services
From recon-ng
![WhoisXML API Logo
From Amass
.NET 10.0 SDK
From ILSpy
.tar.gz
From sqlmap
.zip
From sqlmap
"PF_RING ZC" from ntop
From Masscan
[link
From Midnight Sea
@_RastaMouse
From Silentrinity
@_xpn_
From Silentrinity
@adamtlangley
From Ffuf
@byt3bl33d3r
From Silentrinity
@C_Sto
From Silentrinity
@cmpxchg16
From Netz
@cobbr_io
From Silentrinity
@Daudau
From Silentrinity
@davidtavarez
From Silentrinity
@devinmadewell
From Silentrinity
@enigma0x3
From Empire
@hackabean
From Silentrinity
@harmj0y
From Empire
@ivanbg_2004
From Windows Network CPR
@jondot
From Keyscope
@killswitch_gui
From Empire
@Konloch
From Procyon
@matterpreter
From Silentrinity
@mcohmi
From Silentrinity
@nicolas_dbresse
From Silentrinity
@r3dQu1nn
From Silentrinity
@radareorg
From radare2
@RemiEscourrou
From Silentrinity
@sixdub
From Empire
@SkelSec
From Silentrinity
@sqlmap
From sqlmap
@therealjoetesta
From ssh-mitm
@TheWover
From Silentrinity
@tomnomnom/httprobe
From Httpx
@xorrior
From Empire
**BlueToolkit templates**
From BlueToolkit
**Easily** extensible
From gef
**Prowler Hub**
From Prowler
**Sniffnet Wiki**
From Sniffnet
/24
From Fierce
``BUILD.md``
From pig
``cat doc/pcap-import.md``
From pig
``cat doc/shell.md``
From pig
``CIDRs``
From pig
``Hefesto``
From pig
`gef-legacy`
From gef
`poetry`
From Fierce
`service_policy_kit`
From Keyscope
+ 16 more languages
From Sniffnet
🌐 Official Website
From PETEP
🎬 Youtube PETEP - Tutorial (TCP Proxy for Hacking)
From PETEP
👩‍💻 Developer Guide
From PETEP
📖 User Guide
From PETEP
📚 Methodology
From PETEP
🔽 Download
From PETEP
0BL1V10N CVE-2024-25600 (Bricks Builder Plugin Exploit)
Exploit for CVE-2024-25600 in Bricks Builder (WordPress). Developed for TryHackMe’s Bricks Heist room. Enhanced from Tornad0007. From OD&H
0xffr
From Cyberbro
123Contact Form
A versatile form builder for websites and mobile applications.
2.1 Basic
From Netz
2600
From pig
403JUMP Image
From 403JUMP
90+ notification services, click here for the full list
From Uptime-Kuma
99designs
A platform to connect designers with clients needing logos, websites, and more.
a chapter
From Decai
Abacus
A tool for simplifying expense reporting and tracking for businesses.
AbuseIPDB
From Cyberbro
abusing http hop-by-hop request headers
From HExHTTP
Abusix
From Cyberbro
Acquia
Cloud-based solutions for managing and optimizing digital experiences on Drupal.
ACR122U
A USB-based NFC reader and writer commonly used for RFID development and testing.
ActiveCampaign
A customer experience automation platform for email marketing and CRM.
ActiveProspect
A SaaS platform to automate lead acquisition and qualification processes.
adding new protocols
From Netz
Additional stuff
From MIFARE Classic Tool (MCT)
Ade Little
From Git-Scanner
Adobe
Industry-leading software solutions for creative professionals, including Photoshop and Acrobat.
Advanced options for deployment
From Cyberbro
AeroFS
A private cloud collaboration tool for secure team file sharing.
AggressorScripts
From Silentrinity
aioblescan
From Scapy
Airbase-ng
A tool to create fake access points for testing and social engineering attacks.
Airbitz
A secure Bitcoin wallet and platform for decentralized applications.
Airbnb
A platform for booking short-term homestays and unique travel experiences.
Aircrack-ng
A suite of tools for cracking WEP and WPA-PSK encryption keys.
Airegeddon
A multi-purpose WiFi hacking tool focused on WPA/WPA2 PSK networks.
Aireplay-ng
A tool for injecting frames into a wireless network to manipulate traffic.
Airmon-ng
A tool to configure wireless interfaces into monitor mode for packet capture.
Airolib-ng
A tool to create and manage a database for cracking WPA/WPA2 networks.
Albirew
From Metrodroid
Algolia
A search and discovery API for websites and mobile applications.
Alienvault
From Cyberbro
all the contributors
From Sniffnet
all-contributors
From RustScan
Allan Nordhøy
From Metrodroid
alternative installation methods
From Sniffnet
Altervista
A platform for creating free blogs and websites with monetization options.
Altroconsumo
Italy's largest consumer organization offering product reviews and advice.
Amara
A tool for creating and managing subtitles for videos collaboratively.
Amass Docs
From Amass
Amazon Web Services
A comprehensive cloud platform offering computing power, storage, and other services.
Amazon.com
The world's largest online retailer offering a vast array of products and services.
Analysis of the /fast option inside Linux/Trigona ransomware
From Decai
ANCILE Solutions Inc.
Solutions for creating and delivering on-demand learning and performance support.
Anghami
A music streaming platform focused on Arabic content.
Angr
angr is an open-source binary analysis platform for Python. It combines both static and dynamic symbolic ("concolic") analysis, providing tools to solve a variety of tasks.
AntiHACK
A bug bounty and penetration testing platform based in Asia.
ANXBTC
A Bitcoin trading and exchange platform.
Apache httpd
An open-source HTTP server for hosting websites and applications.
API Explorer
From Keyscope
apktool
A tool for reverse engineering Android apk files
Appcelerator
A cross-platform mobile app development tool.
Apple
A global leader in consumer electronics, software, and online services.
approved PowerShell verbs
From Empire
Apptentive
A platform for mobile app engagement and customer feedback.
Aptible
A security and compliance platform for DevOps teams.
aqvayli
From Metrodroid
Arabic
From sqlmap
Ardour
A digital audio workstation for recording, editing, and mixing sound.
Arkane
A blockchain wallet and API service for developers.
ARM mbed
A platform for IoT device development and deployment.
ARP spoofing with pig
From pig
Asana
A project management tool for team collaboration and task tracking.
ASlookup
Tool for exploring autonomous systems with related data (CIDR, ASN, Org).
Assetnote Wordlists
From SecLists
Autopoisoner
From HExHTTP
available online
From pwntools
awesome sponsors
From gef
AWS Public ECR
From Prowler
Axel
From Cyberbro
BackBox Linux
From Fern WiFi Cracker
BackTrack Linux
From Fern WiFi Cracker
BANNER
From EnumeRannden
Become a backer
From Gobuster
belkacem77
From Metrodroid
Beneke Traub
From MIFARE Classic Tool (MCT)
Bengali
From sqlmap
Bettercap
A powerful tool for man-in-the-middle attacks, network sniffing, and WiFi exploitation.
BiblePass
From SecLists
BinaryNinja
Binary Ninja is an interactive decompiler, disassembler, debugger, and binary analysis platform built by reverse engineers, for reverse engineers.
Bitquark
From Sublist3r
bluediving
Bluediving is a Bluetooth LE security assessment tool that provides functionality for scanning, connecting, and interacting with BLE devices.
Bluelog
Bluelog is a Bluetooth device discovery tool designed to detect nearby Bluetooth devices and log their information.
bluemaho
Bluemaho is a Bluetooth vulnerability assessment tool that performs various attacks such as BlueSmack and L2CAP ping-of-death.
Blueranger
Blueranger is a Bluetooth reconnaissance tool used to find and map Bluetooth devices within range.
blueranger-ng
Blueranger-ng is an updated version of Blueranger, enhancing Bluetooth reconnaissance capabilities.
BMW Group Bug Bounty
The security of our products and services is top priority for us
Bondan
From Metrodroid
Boolang
From Silentrinity
Bounty Factory
A platform for launching bug bounty programs with a community of ethical hackers.
Bountysource
A funding platform for open-source projects and software development bounties.
BSD 3-Clause license
From PowerSploit
BSides Calendar
The calendar of BSides events arround the world.
BSidesLV in 2015
From Empire
BTScanner
BTScanner is a fast Bluetooth scanner that discovers devices and services, making it useful for penetration testing.
Bug Bounty Hunting
Bug Bounty Hunting Search Engine
bug report
From pwntools
BugbountyHQ
A community platform for ethical hackers to collaborate and find bug bounty opportunities.
Bugbountyjp
A Japanese platform for launching and managing bug bounty programs.
Bugcrowd
A platform offering managed bug bounty programs and vulnerability disclosure.
Build Status
From crackle
Bulgarian
From sqlmap
Bully
A tool for brute-forcing WPS PINs of vulnerable routers.
Burp Suite
A powerful GUI based integrated platform for web application security testing, offering tools for intercepting traffic, scanning vulnerabilities, brute-forcing and exploiting security flaws.
Burp Suite
A comprehensive suite for web application security testing, including WiFi-related vulnerabilities.
Bytecode Viewer
From Procyon
C# for Visual Studio Code
From ILSpy
Cache Poisoning at Scale
From HExHTTP
capstone
From plasma
Capstone
From x64dbg
Capstone Engine
From ScratchABit
cargo-deb
From sniffglue
Categories
From Prowler
Censys
Provides data on devices, services, and open ports exposed to the internet, assisting in reconnaissance.
Censys
From Netz
CESPPA
A cybersecurity and bug bounty platform for coordinated vulnerability disclosure.
CeWL
From SecLists
Chinese
From sqlmap
Chiron
From Scapy
Chris Norden
From Metrodroid
cirosec GmbH - Felix Friedberger
From Cyberbro
cirt-fuzzer
Simple TCP/UDP protocol fuzzer for vulnerability testing.
ClrMD
From dnSpy
Cobalt
A pen-testing as a service platform with a global community of security experts.
Coder Bounty
A platform for developers to earn rewards by solving coding challenges.
Codingo
From VHostScan
collection of screenshots
From sqlmap
Community Nope Scripts
From Nope Proxy
complete installation instructions here
From pwntools
Compliance Frameworks
From Prowler
Configuration files
From Ffuf
consider sponsoring
From Sniffnet
Content discovery
From Ffuf
contribute
From Scapy
CONTRIBUTING.md#can-i-create-a-pull-request-for-uptime-kuma
From Uptime-Kuma
Contribution documentation
From gef
contributors
From ILSpy
Contributors
From Keyscope
Cook
From SecLists
Cotopaxi
From Scapy
CPDoS.org
From HExHTTP
crackle
From crackle
Creative Commons 3.0
From MIFARE Classic Tool (MCT)
Creative Commons 4.0
From MIFARE Classic Tool (MCT)
CredCrack
From CrackMapExec
CriminalIP
From Cyberbro
Croatian
From sqlmap
crowdin
From iaito
crt.sh
From Cyberbro
CVE-2016-6366
From Scapy
CVE-2017-0785
From BlueToolkit
CVE-2017-1000251
From BlueToolkit
CVE-2018-19860
From BlueToolkit
CVE-2018-4407
From Scapy
CVE-2018-5383
From BlueToolkit
CVE-2019-5597
From Scapy
CVE-2019-9506
From BlueToolkit
CVE-2019-9506
From BlueToolkit
CVE-2020-10134
From BlueToolkit
CVE-2020-10135
From BlueToolkit
CVE-2020-12351
From BlueToolkit
CVE-2020-12352
From BlueToolkit
CVE-2020-15802
From BlueToolkit
CVE-2020-16898
From Scapy
CVE-2020-24490
From BlueToolkit
CVE-2020-25577
From Scapy
CVE-2020-26555
From BlueToolkit
CVE-2020-26556
From BlueToolkit
CVE-2020-26557
From BlueToolkit
CVE-2020-26558
From BlueToolkit
CVE-2020-26559
From BlueToolkit
CVE-2020-26560
From BlueToolkit
CVE-2020-5551
From BlueToolkit
CVE-2021-24086
From Scapy
CVE-2021-28139
From BlueToolkit
CVE-2021-28444
From Scapy
CVE-2021-35068
From BlueToolkit
CVE-2022-22088
From BlueToolkit
CVE-2022-24695
From BlueToolkit
CVE-2022-25837
From BlueToolkit
CVE-2022-33255
From BlueToolkit
CVE-2022-33280
From BlueToolkit
CVE-2022-40503
From BlueToolkit
CVE-2022-40537
From BlueToolkit
CVE-2023-24023
From BlueToolkit
CVE-2023-45866
From BlueToolkit
CVE-2024-20674
From Scapy
Cyberbro MCP
From Cyberbro
cyberbro_gh
From Cyberbro
cyberbro_graph
From Cyberbro
Cybergordon
From Cyberbro
Daniel Miessler
From SecLists
De-obfuscation of malware Linux/Ladvix
From Decai
decai
From radare2
dedicated docs page
From Cyberbro
dedicated repository
From BlueToolkit
Deluder
From PETEP
Demo
From TikTok Scraper
Detectify
A SaaS platform offering web vulnerability scanning and crowdsourced security.
dev branch
From Empire
Development Guide
From recon-ng
Device Summary Table
From Xeno
DFIR Iris
From Cyberbro
Diaphora
From radare2
Dig
A command-line tool for querying DNS records and gathering information on domain names.
DISCLAIMER.md
From SubFinder
Discord Server
From Amass
Discussion
From CrackMapExec
dnlib
From de4dot
dnlib
From dnSpy
DNS Zone Transfer Protocol (AXFR)
From Fierce
dnschef
A DNS proxy tool that allows for DNS manipulation and phishing attacks.
Dnsrecon
A tool for DNS enumeration, identifying subdomains, and extracting other DNS-related data.
do some Google searches
From MIFARE Classic Tool (MCT)
DockerHub
From Prowler
DockerHub - Prowler API
From Prowler
DockerHub - Prowler UI
From Prowler
docs.pwntools.com
From pwntools
documentation
From BlueToolkit
documentation
From gef
documentation here
From Empire
Domain Name System (DNS)
From Fierce
Domain Names - Concepts and Facilities
From Fierce
Domain Names - Implementation and Specification
From Fierce
Donate with Paypal
From MIFARE Classic Tool (MCT)
Donut
From Silentrinity
dotnet tool install
From ILSpy
DotPeek
A free-of-charge .NET decompiler from JetBrains
Download
From Ffuf
Download latest PETEP release
From PETEP
Download Latest Release Here
From Nope Proxy
DOWNLOAD_TOOLS
From EnumeRannden
doxygen documentation
From ChameleonMini
Dreg
From x64dbg
dsl project
From Katana
Dutch
From sqlmap
ebowla
Framework for Making Environmental Keyed Payloads.
Elasticsearch
From Netz
elevate privileges
From BlueToolkit
emoji key
From RustScan
Empire
From Silentrinity
Empire
From CrackMapExec
Empire wiki
From Empire
enhanced networking with the Intel 82599 VF interface
From Netz
ENI's
From Netz
Enum4linux
A tool to gather information from Windows machines by querying SMB shares and services.
esilsolve
From radare2
esp8266.def file
From ScratchABit
Ettercap
A comprehensive suite for man-in-the-middle attacks on LANs and WiFi networks.
every single stargazer
From Sniffnet
Everything you need to know about FFUF
From Ffuf
Example usage
From Ffuf
EXETools community
From x64dbg
Exolyt.com
Tool for analyzing TikTok profiles and videos.
EXPLOIT_TOOLS
From EnumeRannden
Exploiting cache design flaws
From HExHTTP
explore Scapy topics
From Scapy
External Contributions page
From ChameleonMini
External HTTP Proxy Schema
From PETEP
FAQ
From gef
feature walkthrough
From ILSpy
fenrir
From Scapy
Fierce
A domain scanner tool for DNS reconnaissance, useful for network mapping.
file
From Git-Scanner
Firesheep
HTTP session hijacking attack tool.
Flipper Zero
A versatile multi-tool device for interacting with RFID, NFC, and other protocols.
Florian PILLOT
From Cyberbro
flowsynth
From Scapy
for the devs
From ILSpy
fork of Procyon from bitbucket
From Procyon
FOSS Factory
A platform for funding free and open-source software development.
fragattacks
From Scapy
Fragscapy
From Scapy
FreedomSponsors
A funding platform for open-source software improvements and bug fixes.
French
From sqlmap
Fugue
From x64dbg
fuzz.txt
From SecLists
g0tmi1k
From SecLists
gattacker
From GATTacker
GDB 10.0 or higher
From gef
gef-context
From gef
GEF-Extras
From gef
Genoveva
From SecLists
Georgian
From sqlmap
German
From sqlmap
get_current_account
From Keyscope
Getting Started page
From ChameleonMini
Ghidra
Comprehensive reverse engineering suite developed by the NSA.
Git
From sqlmap
github
From Procyon
Github
From Cyberbro
GitHub Discussions
From Katana
GitHub Issues
From Uptime-Kuma
GitHub releases
From Sniffnet
GitTools
From Git-Scanner
GNU General Public License v3.0 (GPLv3)
From MIFARE Classic Tool (MCT)
GNU Lesser General Public License
From MIFARE Classic Tool (MCT)
Google
From Cyberbro
Google DNS
From Cyberbro
Google Safe Browsing
From Cyberbro
goresym
From radare2
GreatSCT
From CrackMapExec
Greek
From sqlmap
Grep.App
From Cyberbro
guidelines
From gef
h2spacex
From Scapy
Habu
Python toolkit for network hacking.
Habu
From Scapy
HackenProof
A bug bounty and vulnerability coordination platform for businesses.
Hackerhive
A security platform for crowdsourced vulnerability assessments and bug bounties.
HackerOne
A vulnerability coordination and bug bounty platform connecting businesses with hackers.
Hacktrophy
A Slovak bug bounty platform for finding vulnerabilities in digital assets.
headers
From Katana
heavily here
From Empire
Help
From Ffuf
Help & Info section
From MIFARE Classic Tool (MCT)
Help & Info/User Manual
From MIFARE Classic Tool (MCT)
Hindi
From sqlmap
homebrew
From Ffuf
Hopper
A OS X and Linux Disassembler/Decompiler for 32/64-bit Windows/Mac/Linux/iOS executables.
HTTP Toolkit
HTTP Toolkit is an open-source tool for debugging, testing and building with HTTP on Windows, Linux & Mac. 1 click setup for rooted devices.
http://127.0.0.1:5000/config
From Cyberbro
http://tns.thss.tsinghua.edu.cn/~jiliang/publications/MOBISYS2020_BlueDoor.pdf
From BlueToolkit
http://www.fern-pro.com
From Fern WiFi Cracker
https://biham.cs.technion.ac.il/BT/
From BlueToolkit
https://ccid.apdu.fr/
From LibNFC
https://citeseerx.ist.psu.edu/document?repid=rep1&type=pdf&doi=ac095564c820f02b2793694018d419ce99279de0
From BlueToolkit
https://dl.acm.org/doi/pdf/10.1145/3548606.3560668
From BlueToolkit
https://docs.factionsecurity.com/
From Nope Proxy
https://docs.prowler.com
From Prowler
https://fmsh-seclab.github.io/
From BlueToolkit
https://francozappa.github.io/about-bias/
From BlueToolkit
https://github.com/albazrqa/BluEar
From BlueToolkit
https://github.com/ArmisSecurity/blueborne
From BlueToolkit
https://github.com/danielmiessler/SecLists
From Gobuster
https://github.com/danielmiessler/SecLists/tree/master/Discovery/DNS
From Gobuster
https://github.com/darkmentorllc/jackbnimble
From BlueToolkit
https://github.com/DasSecurity-HatLab/BlueRepli-Plus
From BlueToolkit
https://github.com/factionsecurity/faction
From Nope Proxy
https://github.com/ffuf/ffuf/wiki
From Ffuf
https://github.com/ffuf/ffuf/wiki/Configuration
From Ffuf
https://github.com/francozappa/bias
From BlueToolkit
https://github.com/francozappa/bluffs
From BlueToolkit
https://github.com/francozappa/blur
From BlueToolkit
https://github.com/francozappa/knob
From BlueToolkit
https://github.com/fuzzdb-project/fuzzdb
From Gobuster
https://github.com/google/security-research/security/advisories/GHSA-7mh3-gq28-gfrq
From BlueToolkit
https://github.com/google/security-research/security/advisories/GHSA-ccx2-w2r4-x649
From BlueToolkit
https://github.com/greatscottgadgets/ubertooth
From BlueToolkit
https://github.com/marcnewlin/hi_my_name_is_keyboard
From BlueToolkit
https://github.com/martinpaljak/osx-ccid-installer/releases
From LibNFC
https://github.com/Matheus-Garbelini/braktooth_esp32_bluetooth_classic_attacks
From BlueToolkit
https://github.com/maxdos64/BThack
From BlueToolkit
https://github.com/mikeryan/crackle
From BlueToolkit
https://github.com/nccgroup/Sniffle
From BlueToolkit
https://github.com/OJ/gobuster/pull/418
From Gobuster
https://github.com/RCayre/injectable-firmware
From BlueToolkit
https://github.com/savio-code/ghost-phisher
From Fern WiFi Cracker
https://github.com/savio-code/hexorbase
From Fern WiFi Cracker
https://github.com/securing/gattacker
From BlueToolkit
https://github.com/securing/gattacker/wiki/FAQ
From GATTacker
https://github.com/TylerTucker/BluesClues
From BlueToolkit
https://google.github.io/security-research/pocs/linux/bleedingtooth/writeup.html
From BlueToolkit
https://hal.laas.fr/hal-03193297v2/document
From BlueToolkit
https://hexhive.epfl.ch/BLURtooth/
From BlueToolkit
https://i.blackhat.com/USA-20/Wednesday/us-20-Kovah-Finding-New-Bluetooth-Low-Energy-Exploits-Via-Reverse-Engineering-Multiple-Vendors-Firmwares.pdf
From BlueToolkit
https://i.blackhat.com/USA-20/Wednesday/us-20-Xu-Stealthily-Access-Your-Android-Phones-Bypass-The-Bluetooth-Authentication.pdf
From BlueToolkit
https://ieeexplore.ieee.org/stamp/stamp.jsp?tp=&arnumber=10179358
From BlueToolkit
https://ieeexplore.ieee.org/stamp/stamp.jsp?tp=&arnumber=5374082
From BlueToolkit
https://ieeexplore.ieee.org/stamp/stamp.jsp?tp=&arnumber=9833575
From BlueToolkit
https://ieeexplore.ieee.org/stamp/stamp.jsp?tp=&arnumber=9833777
From BlueToolkit
https://inria.hal.science/hal-01587858/document
From BlueToolkit
https://kb.cert.org/vuls/id/799380
From BlueToolkit
https://keenlab.tencent.com/en/2020/03/30/Tencent-Keen-Security-Lab-Experimental-Security-Assessment-on-Lexus-Cars/
From BlueToolkit
https://knobattack.com/
From BlueToolkit
https://link.springer.com/article/10.1007/s00779-017-1081-6
From BlueToolkit
https://link.springer.com/chapter/10.1007/3-540-45353-9_14
From BlueToolkit
https://linktr.ee/schwytz
From BlueToolkit
https://radare.org/discord
From iaito
https://research.nccgroup.com/2022/05/15/technical-advisory-tesla-ble-phone-as-a-key-passive-entry-vulnerable-to-relay-attacks/
From BlueToolkit
https://staff.ie.cuhk.edu.hk/~khzhang/my-papers/2019-ndss-bluetooth.pdf
From BlueToolkit
https://ubertooth.readthedocs.io/en/latest/
From BlueToolkit
https://www.blackhat.com/docs/us-16/materials/us-16-Jasek-GATTacking-Bluetooth-Smart-Devices-Introducing-a-New-BLE-Proxy-Tool.pdf
From BlueToolkit
https://www.cs.cityu.edu.hk/~jhuan9/papers/blueear16mobisys.pdf
From BlueToolkit
https://www.cvedetails.com/cve/CVE-2019-16336/?q=CVE-2019-16336
From BlueToolkit
https://www.cvedetails.com/cve/CVE-2019-17060/?q=CVE-2019-17060
From BlueToolkit
https://www.cvedetails.com/cve/CVE-2019-17061/?q=CVE-2019-17061
From BlueToolkit
https://www.cvedetails.com/cve/CVE-2019-19192/?q=CVE-2019-19192
From BlueToolkit
https://www.cvedetails.com/cve/CVE-2020-3703/?q=CVE-2020-3703
From BlueToolkit
https://www.cvedetails.com/cve/CVE-2021-35068/?q=CVE-2021-35068
From BlueToolkit
https://www.cvedetails.com/cve/CVE-2022-22088/?q=CVE-2022-22088
From BlueToolkit
https://www.cvedetails.com/cve/CVE-2022-25836/
From BlueToolkit
https://www.cvedetails.com/cve/CVE-2022-33255/?q=CVE-2022-33255
From BlueToolkit
https://www.cvedetails.com/cve/CVE-2022-33280/?q=CVE-2022-33280
From BlueToolkit
https://www.cvedetails.com/cve/CVE-2022-40503/?q=CVE-2022-40503
From BlueToolkit
https://www.cvedetails.com/cve/CVE-2022-40537/?q=CVE-2022-40537
From BlueToolkit
https://www.cvedetails.com/cve/CVE-2023-21647/?q=CVE-2023-21647
From BlueToolkit
https://www.factionsecurity.com/
From Nope Proxy
https://www.ndss-symposium.org/wp-content/uploads/2023/02/ndss2023_s119_paper.pdf
From BlueToolkit
https://www.radare.org/
From radare2
https://www.sec.in.tum.de/i20/publications/method-confusion-attack-on-bluetooth-pairing/@@download/file/conference-proceeding.pdf
From BlueToolkit
https://www.usenix.org/legacy/event/mobisys05/tech/full_papers/shaked/shaked.pdf
From BlueToolkit
https://www.usenix.org/system/files/conference/woot13/woot13-ryan.pdf
From BlueToolkit
https://www.usenix.org/system/files/sec19-sivakumaran_0.pdf
From BlueToolkit
https://www.usenix.org/system/files/sec20-zhang-yue.pdf
From BlueToolkit
https://www.usenix.org/system/files/woot20-paper-wu.pdf
From BlueToolkit
https://www.youtube.com/user/inquisb/videos
From sqlmap
Hudson Rock
From Cyberbro
Hydra
From Midnight Sea
Hypercorn
From Silentrinity
iaito
From radare2
iaito-translations
From iaito
Ibrahim Mosaad
From Sublist3r
ICANN
From Cyberbro
iced
From Sniffnet
Iced
From dnSpy
ICSharpCode.Decompiler
From ILSpy
IDA
Multi-platform disassembler and debugger for Windows, Linux, and macOS.
ida-xtensa2 repository
From ScratchABit
If you get an error from Gradle about `:material-design-icons` not being available, then your clone doesn't have the submodules.
From Metrodroid
Ignacio Portal
From SecLists
ILSpy decompiler engine
From dnSpy
image
From Cyberbro
image
From Cyberbro
image
From Katana
image
From Nope Proxy
image
From Xeno
Image
From Nipe
image-analysis
From Cyberbro
image-history
From Cyberbro
image-stats
From Cyberbro
Incremental Zone Transfer in DNS (IXFR)
From Fierce
Indonesian
From sqlmap
Influence Grid
Tool for finding TikTok influencers.
INFO_PANEL
From EnumeRannden
InstaFollowers
Tool for finding TikTok user IDs.
Install Golang 1.14 +
From Netz
Installation
From Ffuf
IntelOwl
From Cyberbro
Interactive mode
From Ffuf
internetwache
From Git-Scanner
intigriti
A leading European platform for crowdsourced security testing.
Ioc.One
From Cyberbro
IPinfo
From Cyberbro
IPquery
From Cyberbro
irc.libera.chat
From radare2
is installable instantly
From gef
isf
From Scapy
issue
From Cyberbro
issue
From pig
Issue
From CrackMapExec
issue #1
From Cardpeek
issues page
From Nipe
Issues page
From ChameleonMini
Italian
From sqlmap
JAD
JAD Java Decompiler (closed-source, unmaintained)
jadx-gui features overview
From JADX
Jansson
From x64dbg
Japanese
From sqlmap
Jason Haddix
From SecLists
Java Decompiler
From Procyon
Joe Testa
From ssh-mitm
Jon Mark Allen
From Cyberbro
jq
From Netz
JS Nice
Web service guessing JS variables names and types based on the model derived from open source.
KDE/GNOME
From Fern WiFi Cracker
keystone
From plasma
keystone
From radare2
Kickstarter project
From ChameleonMini
Kismet
A wireless network detector, sniffer, and intrusion detection system.
Korean
From sqlmap
krackattacks-scripts
From Scapy
Kurdish (Central)
From sqlmap
language support status
From ILSpy
latest CI build (master)
From ILSpy
latest release
From ILSpy
Latest release
From dnSpy
Lauri Andler
From Metrodroid
LICENSE
From Ffuf
LICENSE
From Sublist3r
LICENSE
From exifharvester
Linux Kernel
From Scapy
Linux/Prometei botnet
From Decai
Linux/Trigona ransomware
From Decai
lmstudio+gptoss
From Decai
logo
From Metrodroid
Luyten
One of the best, though a bit slow, hangs on some binaries and not very well maintained.
lz4
From x64dbg
Macchanger
From Fern WiFi Cracker
Main
From radare2
Main
From EnumeRannden
Manual and Guides Here
From Nope Proxy
Marcelo Liberato
From Metrodroid
marketplace
From ILSpy
marketplace
From ILSpy
marketplace
From ILSpy
Marlon Colhado
From Metrodroid
Mass Git Scanner
From Git-Scanner
masscan
From Netz
Matrix
From radare2
Mavekite.com
Tool for managing and analyzing TikTok campaigns.
MaxMind
From Sniffnet
Metrodroid
From Metrodroid
Metroflip
A Flipper Zero app for reading and parsing metro cards, inspired by Metrodroid. It supports multi-protocol card reading and global transit card analysis.
mfcuk
From MIFARE Classic Tool (MCT)
MFKey
MIFARE Classic key recovery tool.
mfoc
From MIFARE Classic Tool (MCT)
Michael
From Metrodroid
Michael Farrell
From Metrodroid
Microsoft Defender for Endpoint
From Cyberbro
Microsoft Store (RTM versions only)
From ILSpy
MIFARE Classic (1k) 'Datasheet'
From MIFARE Classic Tool (MCT)
MIFARE Classic Tool (Donate Version) on Google Play
From MIFARE Classic Tool (MCT)
MIFARE Classic Tool on Huawei's AppGallery
From MIFARE Classic Tool (MCT)
Mifare Fuzzer
App emulates Mifare Classic cards with various UIDs to check how reader reacts on them.
mirage
From Scapy
MISP
From Cyberbro
mission critical code
From Keyscope
MitM
A man-in-the-middle framework for intercepting, modifying, and injecting traffic.
mitm6
From Scapy
modexp
From Silentrinity
Mr. eXoDia
From x64dbg
mtraceroute
From Scapy
Multi Languages
From Uptime-Kuma
Naga
From Silentrinity
Name Servers (NS)
From Fierce
naofum
From Metrodroid
net-creds
From Scapy
Netcat
A networking utility for reading and writing data across networks, often used for debugging.
Netcat
A versatile networking tool used for port scanning, banner grabbing, and transferring files.
netenum
From Scapy
netprobify
From Scapy
Network graph
From Amass
Network Security Toolkit (NST)
From Scapy
NetworkMiner
Network Forensic Analysis Tool (NFAT) for analyzing network traffic.
new features and functionalities
From Sniffnet
NFC Magic
A Flipper zero application for writing to NFC tags with modifiable sector 0
Nightmare
Nightmare is an intro to binary exploitation / reverse engineering course based around ctf challenges. I call it that because it's a lot of people's nightmare to get hit by weaponized 0 days, which these skills directly translate into doing that type of work.
nmap
Security scanner for network exploration and vulnerability scanning.
Nmap
A network scanning tool used for discovering hosts, services, and vulnerabilities on a network.
NMAP
From EnumeRannden
Node.js
From Uptime-Kuma
Node.js
From TikTok Scraper
NokisDemox
From Metrodroid
Oblivion Development & Hosting
From Windows Network CPR
OffensiveCSharp
From Silentrinity
Official Book
From radare2
official radare2 mcp
From Decai
official store
From Sniffnet
official wiki
From CrackMapExec
Olly
32-bit assembler-level debugging tool for Windows.
omersiar
From Metrodroid
open an issue
From Sniffnet
open-vsx
From ILSpy
OpenBSD
From Scapy
OpenCTI
From Cyberbro
OpenRDAP
From Cyberbro
options
From ILSpy
oracle.com
From JADX
originally written
From Fierce
OSINT Combine TikTok Quick Search
Quick search tool for TikTok profiles.
OSINT_TOOLS
From EnumeRannden
p0f3plus
From Scapy
package documentation
From btlejuice
packetweaver
From Scapy
Parameter fuzzing
From Ffuf
Paros
Java-based HTTP/HTTPS proxy for web application vulnerability assessment.
PayloadsAllTheThings
From SecLists
pefile
From plasma
Pentest Collaboration Framework
Opensource, cross-platform and portable toolkit for automating routine processes when carrying out various works for testing!
Persian
From sqlmap
PETEP
From PETEP
PETEP - PEnetration TEsting Proxy
From PETEP
PETEP Modifier
From PETEP
PETEP Proxy Settings
From PETEP
PETEP Repeater
From PETEP
PETEP Tagger
From PETEP
Petter Reinholdtsen
From Metrodroid
PF_RING ZC (Zero Copy)
From Netz
Phishtank
From Cyberbro
PicoPass
App to communicate with NFC tags using the PicoPass(iClass) format.
plugins
From ILSpy
pm2
From Uptime-Kuma
pnpm installation
From Prowler
Polish
From sqlmap
Portuguese
From sqlmap
POST data fuzzing
From Ffuf
PowerShell
From ILSpy
PowerSploit style guide
From Empire
PPPwn (CVE-2006-4304)
From Scapy
Practical Web Cache Poisoning
From HExHTTP
project-memoria-detector
From Scapy
projectdiscovery
From Katana
prompt-toolkit
From Silentrinity
Prowler App Documentation
From Prowler
Prowler App Usage Guide
From Prowler
Proxmark3
A powerful tool for reading, writing, and analyzing RFID and NFC cards.
Proxmark3
From MIFARE Classic Tool (MCT)
ProxyDroid
From mitmsocks4j
Pull Request
From CrackMapExec
pulling the script contents into the module on tasking
From Empire
pwnagotchi
From Scapy
Pymsasid
From ScratchABit
PyPI
From Prowler
Pypykatz
From Silentrinity
pysap
From Scapy
Python
From sqlmap
Python Programming Language
From Fern WiFi Cracker
Python Qt GUI library
From Fern WiFi Cracker
python-msgpack
From plasma
python-pyelftools
From plasma
Python-Scapy
From Fern WiFi Cracker
Python2 support was dropped
From gef
Python3
From ScratchABit
Quart
From Silentrinity
quickstart here
From Empire
r2con
From radare2
r2copilot
From Decai
r2dec
From R2Dec
r2dec
From radare2
r2diaphora
From radare2
r2frida
From radare2
r2ghidra
From radare2
r2papi
From radare2
r2pipe
From radare2
r2pm
From radare2
r2poke
From radare2
r2sarif
From radare2
r2yara
From radare2
r4ghidra
From radare2
Rachid.A research
From HExHTTP
Radamsa
From Ffuf
radare2
From iaito
radius2
From radare2
Rannden-SHA
From EnumeRannden
Read DEVELOPERS.md
From R2Dec
read more
From MIFARE Classic Tool (MCT)
Reaver
A tool designed to crack WPS PINs of routers to gain access to WPA networks.
Reaver
From Fern WiFi Cracker
Recon with Me !!!
From SubFinder
Recon-ng content now available on Pluralsight!
From recon-ng
Reflection Framework
From Procyon
release page
From Katana
released
From radare2
releases
From iaito
releases
From Keyscope
releases page
From Gobuster
releases page
From RustScan
repository
From ILSpy
required dependencies
From Sniffnet
Responder
From Scapy
Responsible denial of service with web cache poisoning
From HExHTTP
retryablehttp
From Httpx
Reverse engineering the musical.ly API
From TikTok API
REVERSE_SHELL_TOOL
From EnumeRannden
RIOT-OS
From Scapy
Ripper Web Content - Capture Metadata Content
Extension that analyses and extracts metadata from content found on the web.
Rob O'Regan
From Metrodroid
Roslyn
From dnSpy
routopsy
From Scapy
Russian
From sqlmap
rvrsh3ll
From Empire
Safehats
A vulnerability coordination platform for organizations to work with ethical hackers.
SamLists
From SecLists
Santiago Hernández
From NetHawk
Savefrom.net
Tool for downloading TikTok videos.
Scan the whole internet while drinking coffee
From Netz
Scapy
From Scapy
scapy-benchmarks
From Scapy
Scapy-Packet-Viewer
From Scapy
scapy\_unroot
From Scapy
ScratchABlock
From ScratchABit
screenshot
From ScratchABit
Screenshot
From iaito
Screenshot
From sqlmap
Screenshots
From MIFARE Classic Tool (MCT)
Scylla
From x64dbg
Seader
A Flipper Zero application to interface with a SAM from the Flipper Zero over UART
SeatBelt
From Silentrinity
SecureTeam Java Decompiler
From Procyon
See `promptfoo` docs.
From Prowler
See `trivy` docs.
From Prowler
Serbian
From sqlmap
Server
From radare2
SharpSploit
From Silentrinity
Shodan
Search engine for finding servers and devices connected to the internet.
Shodan
A search engine that scans and indexes devices connected to the internet for reconnaissance.
Shodan
From Cyberbro
Side
From radare2
SignPath Foundation
From Sniffnet
SignPath.io
From Sniffnet
Sinpo Lib
From Metrodroid
Sinwindie TikTok Bookmarklet Tools
Bookmarklet tools for TikTok OSINT.
slidedeck
From VHostScan
Slovak
From sqlmap
smbexec
From CrackMapExec
smbmap
From CrackMapExec
smbspider
From CrackMapExec
Snaptik.app
Tool for downloading TikTok videos.
Sniffnet
From Sniffnet
Solving a crackme
From Decai
Spanish
From sqlmap
SpiderFoot
An automation tool for gathering intelligence about a target by querying public databases and sources.
spooftooph
Spooftooph is a Bluetooth spoofing tool that can impersonate other Bluetooth devices, useful for social engineering attacks.
Spur.us
From Cyberbro
SpySe
Data gathering service offering detailed information on IPs, domains, ports, technologies, and more through OSINT.
src/bluesnarfer.c#L59
From bluesnarfer
sshame
From Scapy
SSLstrip
A tool that downgrades HTTPS connections to HTTP, enabling interception of traffic.
standards
From x64dbg
Start a Q&A Discussion
From Katana
Start an Ideas Discussion
From Katana
State of Authority Record (SOA)
From Fierce
Steven Steiner
From Metrodroid
Stig Dahl
From Cyberbro
subbrute
From Sublist3r
SubdomainRadar
All-in-one recon platform: 50+ data sources for subdomain discovery, port & vulnerability scans, screenshots, and API access
Sublist3r
From Sublist3r
Subreddit (r/UptimeKuma)
From Uptime-Kuma
Subversion
From Fern WiFi Cracker
Sumbodo
From Metrodroid
Support
From Nope Proxy
Synack
A crowdsourced security platform combining automation with a network of ethical hackers.
Tap on to reverse engineering
From Metrodroid
tbonang
From Metrodroid
Tcpdump
A command-line packet analyzer for capturing and analyzing network traffic.
templating guide
From BlueToolkit
Terminal Image
From Xeno
TEST_REPORT
From EnumeRannden
THANKS.md
From SubFinder
the sponsoring documentation
From gef
TheRook
From Sublist3r
this
From x64dbg
this tool
From Karkatau
Thread at the Proxmark forum
From MIFARE Classic Tool (MCT)
Threat Analysis of the Domain Name System (DNS)
From Fierce
ThreatFox
From Cyberbro
TIDoS Framework
From Scapy
Tikbuddy
Tool for analyzing TikTok profiles and content.
TikTok
From TikTok API
TikTok Creative Center Statistics
Tool for finding trending hashtags and content on TikTok.
TikTok Downloader
Tool for downloading TikTok videos.
TikTok Hashtags
Tool for generating TikTok hashtags.
TikTok Timestamp
Tool for analyzing timestamps on TikTok videos.
TikView
Tool for searching TikTok profiles and content.
tikvstock
Tool for stock and analyzing TikTok videos.
TitanEngine Community Edition
From x64dbg
Tokvid
Tool for downloading TikTok videos.
Tool Page
From SecLists
Tool Page
From SecLists
Toomas Losin
From Metrodroid
TorCrawl
Python-based tool to crawl .onion websites efficiently.
TorPylle
From Scapy
tr4ceflow
From x64dbg
tr4ceflow
From x64dbg
trackerjacker
From Scapy
Tradecraft - a course on red team operations
A YouTube playlist providing a detailed course on red team operations.
Troubleshooting guide
From JADX
Troubleshooting Q&A
From JADX
try it online
From gef
TubeHi
Tool for analyzing TikTok and YouTube content.
Turkish
From sqlmap
tutorial
From ILSpy
Tuts4You community
From x64dbg
twitter
From Procyon
u/louislamlam
From Uptime-Kuma
UBERTOOTH
UBERTOOTH is a hardware-based Bluetooth analysis and interception tool, capable of monitoring Bluetooth communications.
ufonet
From Scapy
Ukrainian
From sqlmap
uncompyle6
Decompiler for the over 20 releases and 20 years of CPython.
Uptime Kuma Sponsors
From Uptime-Kuma
Uri Shamay
From Netz
URLscan
From Cyberbro
URLVoid
Website reputation checker that scans URLs for safety using multiple security engines and blocklists.
User Guide - External HTTP Proxy
From PETEP
user's manual
From sqlmap
Using external mutator
From Ffuf
Vhost discovery
From Ffuf
VHostScan
From VHostScan
VHOSTScan Feature Map
From VHostScan
VHOSTScan Fuzzy Logic Example
From VHostScan
VHOSTScan STDIN Example
From VHostScan
VHOSTScan Wordlist example
From VHostScan
Vidnice
Tool for analyzing TikTok profiles and content.
Vietnamese
From sqlmap
virtual environment
From ScratchABit
VirusTotal
From Cyberbro
Vistaus
From Metrodroid
VisualPharm
From x64dbg
Vladimir Serbinenko
From Metrodroid
VS MEF
From dnSpy
Vulnerability Table
From Xeno
W32/SkyAI
From Decai
Wash
A tool to identify routers that are vulnerable to WPS attacks.
WayBackMachine
From LibNFC
WayBackMachine
From LibNFC
Waybackurls
A tool for extracting historical URLs from the Wayback Machine, helping to discover hidden or outdated web resources.
Web Cache Entanglement: Novel Pathways to Poisoning
From HExHTTP
Web cache poisoning with an unkeyed header
From HExHTTP
WEB_TOOLS
From EnumeRannden
Weblate Readme
From Uptime-Kuma
WebScout
From Cyberbro
Webshop
From ChameleonMini
WHAD
From Scapy
What bluepot looks like
From bluepot
Wifi Jammer
Program to jam all Wi-Fi clients in range.
wifiphisher
From Scapy
Wifite
A tool for automating the cracking of WEP and WPA networks.
wiki
From Silentrinity
wiki
From plasma
wiki
From plasma
wiki
From CrackMapExec
Wiki
From Silentrinity
Wiki
From dnSpy
Wiki
From recon-ng
wiki page
From JADX
wiki page
From JADX
Wikipedia
From MIFARE Classic Tool (MCT)
Wilbert Duijvenvoorde
From Metrodroid
Wildcard DNS Record
From Fierce
Wireshark
A network protocol analyzer for capturing and analyzing network packets.
Wireshark
A network protocol analyzer that captures and inspects network packets in real-time.
with Out-String
From Empire
with r2ai
From Decai
Wl
From SecLists
write-ups repository
From pwntools
www.htw-aalen.de
From MIFARE Classic Tool (MCT)
www.nfc-tag.de
From MIFARE Classic Tool (MCT)
www.oxygen-icons.org
From MIFARE Classic Tool (MCT)
XEDParse
From x64dbg
Xterm
From Fern WiFi Cracker
Yaron Shahrabani
From Metrodroid
YesWeHack
A global bug bounty and vulnerability disclosure platform.
youtube talks
From radare2
YWH HTTP Header Exploitation
From HExHTTP
ZAP
Integrated penetration testing tool for identifying vulnerabilities in web applications.
zgrab2
From Netz
zgrab2 modules
From Netz
ZMap
From Netz
ZMap
From Netz
Zone Transfer
From Fierce
zonetransfer.me
From Fierce
ZoomEye
From Netz