Skip to content
Change the repository type filter

All

    Repositories list

    • A Python based ingestor for BloodHound
      Python
      368000Updated Feb 10, 2026Feb 10, 2026
    • Check whether an IP address or hostname belongs to popular cloud providers
      Python
      78131Updated Feb 10, 2026Feb 10, 2026
    • bbot

      Public
      The recursive internet scanner for hackers. 🧡
      Python
      7669.4k9319Updated Feb 9, 2026Feb 9, 2026
    • blastdns

      Public
      An ultra-fast DNS resolver written in Rust, with Python bindings
      Rust
      02012Updated Feb 9, 2026Feb 9, 2026
    • wapalyzer

      Public
      🌐 Identify the technologies powering any website. This is a fork of the now deleted Wappalyzer project by @AliasIO and community.
      JavaScript
      564015Updated Feb 8, 2026Feb 8, 2026
    • A persistent database + CLI for your BBOT scan data 🧡
      Python
      840131Updated Feb 5, 2026Feb 5, 2026
    • MANSPIDER

      Public
      Spider entire networks for juicy files sitting on SMB shares. Search filenames or file content - regex supported!
      Python
      1541.3k147Updated Feb 5, 2026Feb 5, 2026
    • baddns

      Public
      Check subdomains for subdomain takeovers and other DNS tomfoolery
      Python
      42435108Updated Feb 4, 2026Feb 4, 2026
    • A library for detecting known secrets across many web frameworks
      Python
      7576699Updated Feb 4, 2026Feb 4, 2026
    • Certipy

      Public
      Tool for Active Directory Certificate Services enumeration and abuse
      Python
      452400Updated Jan 30, 2026Jan 30, 2026
    • TREVORspray is a modular password sprayer with threading, clever proxying, loot modules, and more!
      Python
      1731.3k60Updated Jan 29, 2026Jan 29, 2026
    • NetExec

      Public
      The Network Execution Tool
      Python
      660100Updated Jan 28, 2026Jan 28, 2026
    • impacket

      Public
      Impacket is a collection of Python classes for working with network protocols.
      Python
      3.9k100Updated Jan 28, 2026Jan 28, 2026
    • RadixTarget is a performant radix implementation designed for quick lookups of IP addresses/networks and DNS hostnames.
      Rust
      11114Updated Jan 26, 2026Jan 26, 2026
    • ratelimit

      Public
      A high-performance, non-blocking token bucket rate limiter written in Go
      Go
      0302Updated Jan 26, 2026Jan 26, 2026
    • A CI/CD-verified list of the internet's known-good public DNS servers (from public-dns.info) Updated weekly!
      Python
      73611Updated Jan 17, 2026Jan 17, 2026
    • Azure AiTM Function PoC to phish Entra ID Credentials
      JavaScript
      13000Updated Dec 4, 2025Dec 4, 2025
    • webcap

      Public
      An ultra lightweight web screenshot tool with advanced DOM analysis features.
      Python
      439414Updated Dec 2, 2025Dec 2, 2025
    • A SOCKS proxy written in Python that randomizes your source IP address. Round-robin your evil packets through SSH tunnels or give them billions of unique source…
      Python
      7550122Updated Oct 27, 2025Oct 27, 2025
    • AD ACL abuse
      Python
      51000Updated Sep 11, 2025Sep 11, 2025
    • A collection of helpful blue team resources
      PowerShell
      1700Updated Sep 11, 2025Sep 11, 2025
    • PowerShell script and Java code to decrypt WebLogic passwords
      PowerShell
      79000Updated Sep 4, 2025Sep 4, 2025
    • VulnVault

      Public
      A localized version of NVD's information on CPEs, CVEs, etc.
      Python
      1000Updated Jul 18, 2025Jul 18, 2025
    • Intentionally vulnerable web applications
      PHP
      1100Updated Jun 28, 2025Jun 28, 2025
    • Responder

      Public
      Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv2/LMv2, Extended Securi…
      Python
      1.8k000Updated Jun 24, 2025Jun 24, 2025
    • A PrintNightmare (CVE-2021-34527) Python Scanner. Scan entire subnets for hosts vulnerable to the PrintNightmare RCE
      Python
      119000Updated Jun 24, 2025Jun 24, 2025
    • Partial python implementation of SharpGPOAbuse
      Python
      60100Updated May 15, 2025May 15, 2025
    • Tool for Active Directory Certificate Services enumeration and abuse
      Python
      452000Updated Apr 30, 2025Apr 30, 2025
    • kerbrute

      Public
      A tool to perform Kerberos pre-auth bruteforcing
      Go
      468100Updated Apr 29, 2025Apr 29, 2025
    • writehat

      Public
      A pentest reporting tool written in Python. Free yourself from Microsoft Word.
      Python
      2531.5k344Updated Mar 27, 2025Mar 27, 2025