-
objection
📱 objection - runtime mobile exploration
Python ★ 9.2k 18d agoExplain → -
gowitness
🔍 gowitness - a golang, web screenshot utility using Chrome Headless
Go ★ 4.3k 1mo agoExplain → -
reGeorg
The successor to reDuh, pwn a bastion webserver and create SOCKS proxies through the DMZ. Pivot and pwn.
Python ★ 3.2k 1y agoExplain → -
ruler
A tool to abuse Exchange services
Go ★ 2.3k 2y agoExplain → -
mana
*DEPRECATED* mana toolkit for wifi rogue AP attacks and MitM
HTML ★ 1.1k 7y agoExplain → -
DET
(extensible) Data Exfiltration Toolkit (DET)
Python ★ 823 8y agoExplain → -
godoh
🕳 godoh - A DNS-over-HTTPS C2
Go ★ 809 2y agoExplain → -
kwetza
Python script to inject existing Android applications with a Meterpreter payload.
Smali ★ 644 2y agoExplain → -
hostapd-mana
SensePost's modified hostapd for wifi attacks.
C ★ 613 1y agoExplain → -
Snoopy
Snoopy: A distributed tracking and data interception framework
Python ★ 612 13y agoExplain → -
rattler
Automated DLL Enumerator
C++ ★ 546 8y agoExplain → -
DNS-Shell
DNS-Shell is an interactive Shell over DNS channel
Python ★ 532 5y agoExplain → -
USaBUSe
Universal Serial aBUSe is a project to demonstrate the risks of hardware bypasses of software security by Rogan Dawes at SensePost.
C ★ 501 8y agoExplain → -
snoopy-ng
Snoopy v2.0 - modular digital terrestrial tracking framework
Python ★ 443 9y agoExplain → -
Frack ▣
Frack - Keep and Maintain your breach data
Python ★ 385 1y agoExplain → -
reDuh
Create a TCP circuit through validly formed HTTP requests
Java ★ 354 9y agoExplain → -
pipetap
A Windows Named Pipe Multi-tool / Proxy
C++ ★ 342 6mo agoExplain → -
impersonate
A windows token impersonation tool
Python ★ 325 3y agoExplain → -
susinternals
psexecsvc - a python implementation of PSExec's native service implementation
Python ★ 305 2mo agoExplain → -
wiresocks
A sock, with a wire, so you can tunnel all you desire.
Shell ★ 299 2y agoExplain → -
autoDANE
Auto Domain Admin and Network Exploitation.
Python ★ 298 8y agoExplain → -
mallet
Mallet is an intercepting proxy for arbitrary protocols
Java ★ 292 1y agoExplain → -
SPartan
Frontpage and Sharepoint fingerprinting and attack tool.
Python ★ 285 4y agoExplain → -
berate_ap ⑂
Script for orchestrating mana rogue WiFi Access Points.
Shell ★ 249 1y agoExplain → -
wpa_sycophant
Evil client portion of EAP relay attack
C ★ 219 3y agoExplain → -
UserEnum
Domain user enumeration tool
Python ★ 217 2y agoExplain → -
jack
Drag and Drop ClickJacking PoC development assistance tool.
CSS ★ 197 5y agoExplain → -
wikto
Nikto for Windows with some extra features.
C# ★ 186 9y agoExplain → -
routopsy
Routopsy - Hacking Routers with Routers
Python ★ 179 4y agoExplain → -
heartbleed-poc
Test for SSL heartbeat vulnerability (CVE-2014-0160)
Ruby ★ 170 12y agoExplain → -
dwn
d(ockerp)wn - a docker pwn tool manager
Python ★ 156 5y agoExplain → -
gdi-palettes-exp
DC25 5A1F - Demystifying Windows Kernel Exploitation by Abusing GDI Objects
C++ ★ 145 9y agoExplain → -
assless-chaps
Crack MSCHAPv2 challenge/responses quickly using a database of NT hashes
Python ★ 141 2y agoExplain → -
go-out
☄️ go-out - A Golang egress buster.
Go ★ 128 4mo agoExplain → -
birp
Big Iron Recon & Pwnage
Python ★ 126 4y agoExplain → -
wadi
Wadi Fuzzing Harness
JavaScript ★ 126 9y agoExplain → -
mydumbedr
No description.
C ★ 122 2y agoExplain → -
InvokeADCheck
InvokeADCheck is a PowerShell module designed to evaluate the security of Active Directory environments.
PowerShell ★ 121 1y agoExplain → -
mail-in-the-middle
No description.
Python ★ 109 1y agoExplain → -
frida-windows-playground
A collection of Frida hooks for experimentation on Windows platforms.
C ★ 102 7y agoExplain → -
liniaal
Liniaal - A communication extension to Ruler
Go ★ 100 7y agoExplain → -
notruler
The opposite of Ruler, provides blue teams with the ability to detect Ruler usage against Exchange.
Go ★ 96 8y agoExplain → -
ms16-098
Windows 8.1 x64 Exploit for MS16-098 RNGOBJ_Integer_Overflow
C ★ 92 9y agoExplain → -
offensive-rpc
Offensive RPC PoC
C++ ★ 90 4y agoExplain → -
bloatware-pwn
LPE / RCE Exploits for various vulnerable "Bloatware" products
C# ★ 88 10mo agoExplain → -
goLAPS
Retrieve LAPS passwords from a domain. The tools is inspired in pyLAPS.
Go ★ 88 1y agoExplain → -
hash-cracker
Script to perform some hashcracking logic automagically
C ★ 84 8d agoExplain → -
anapickle
Toolset for writing shellcode in Python's Pickle language and for manipulating pickles to inject shellcode.
Python ★ 84 9y agoExplain → -
xrdp
A rudimentary remote desktop tool for the X11 protocol exploiting unauthenticated x11 sessions
Python ★ 81 9y agoExplain → -
autoresponder
Quick python script to automatically load NTLM hashes from Responder logs and fires up Hashcat to crack them
Python ★ 79 10y agoExplain → -
apostille
No description.
Java ★ 76 2y agoExplain → -
shinai-fi
Docker images for learning wifi hacking
Shell ★ 72 7y agoExplain → -
peanuts
Peanuts is a free and open source wifi tracking tool. Based on the SensePosts Snoopy-NG project that is now closed.
Python ★ 70 8y agoExplain → -
thumbscr-ews
Exchangelib wrapper for pentesting
Python ★ 69 1y agoExplain → -
WiFi-Rifle
Creating a wireless rifle de-authentication gun, which utilized a yagi antenna and a Raspberry Pi.
Python ★ 69 10y agoExplain → -
punch-q
👊 A small utility to play with IBM MQ
Python ★ 67 3y agoExplain → -
common-substr
Simple tool to extract the most common substrings from an input text. Built for password cracking.
Go ★ 65 17d agoExplain → -
wsproxy
A websocket proxy
JavaScript ★ 54 8y agoExplain → -
BiLE-suite
The Bi-directional Link Extractor.
Perl ★ 53 9y agoExplain → -
go-derper
Memcache hacking tool.
Ruby ★ 47 9y agoExplain → -
shellnot
Pseudo-shell for RCE scenarios: tunnels commands via /tmp sockets to a local daemon, keeps context, no bind or reverse shell needed.
C ★ 46 1y agoExplain → -
yeti
SensePost's network footprinting and enumeration tool. You can't pwn what you don't know about.
Java ★ 42 11y agoExplain → -
mainframe_brute ⑂
Mainframe bruter and screen automation utility.
Python ★ 42 11y agoExplain → -
sockstlsproxy
No description.
C# ★ 40 3y agoExplain → -
ntcrack
Left To My Own Devices - NT hash tools
Rust ★ 40 3y agoExplain → -
understanding-eap
A repository with toy implementations of MSCHAPv2, MPEE and WPA/2 to understand EAP better
Python ★ 38 7y agoExplain → -
CVE-2025-64446
A scanner for the FortiNet vulnerability CVE-2025-64446
Python ★ 31 7mo agoExplain → -
dual-pod-shock
No description.
C ★ 29 5y agoExplain → -
policies
Collection of information security policies.
★ 29 9y agoExplain → -
Misc-Windows-Hacking ⑂
Miscellaneous projects related to attacking Windows.
C++ ★ 28 7y agoExplain → -
Suru
Suru is one of the original Man In The Middle (MITM) proxies that sits between the user's browser and the web application.
C# ★ 28 9y agoExplain → -
steampipe-plugin-projectdiscovery ▣
A steampipe plugin to query projectdiscovery.io tools.
Go ★ 27 1y agoExplain → -
dnserver ⑂
Simple development DNS server written in python
Python ★ 26 8y agoExplain → -
squeeza
SQL Injection without the pain of syringes.
Ruby ★ 25 9y agoExplain → -
depscanner
Detect public repository dependencies in the GitHub repositories with an orphan required library.
Python ★ 24 1d agoExplain → -
x11-active-displays
Checks X11 and outputs a screenshot to of the display if allowed and the display is active
Lua ★ 23 9y agoExplain → -
wpa3-vuln
hostapd and wpa_supplicant 2.7 vulnerable to Mathy's WPA3 bugs
C ★ 23 7y agoExplain → -
Skype-Maltego-Client ⑂
A set of local skype transforms for Maltego to utilise Skype and search the directory
Python ★ 20 10y agoExplain → -
cipherchecks
visually see issues with supported cipher suites
Python ★ 19 23d agoExplain → -
SapCap
SApCap is a SAP packet sniffer and decompression tool for analysing SAP GUI (DIAG) traffic
C++ ★ 17 9y agoExplain → -
maltego-mvs
Tools to combine MVS data with external sources and visualise the output in Maltego.
Python ★ 17 12y agoExplain → -
password-tools
Service desk password tools.
JavaScript ★ 16 9y agoExplain → -
6thSense
A while back antirez, in a post to Bugtraq, detailed a new Tcp portscan method.
Perl ★ 16 9y agoExplain → -
MITMf ⑂
Framework for Man-In-The-Middle attacks
Python ★ 15 8y agoExplain → -
ntp_monlist
Basic script to pull addresses from a NTP server using the monlist command.
Python ★ 14 9y agoExplain → -
net-creds ⑂
Sniffs sensitive data from interface or pcap
Python ★ 14 8y agoExplain → -
XAPSpy
Runtime analysis of windows phone 7 applications.
C# ★ 14 9y agoExplain → -
SAPProx
SAPProx is a proof of concept tool for intercepting and modifying SAP GUI (DIAG protocol) traffic.
C++ ★ 13 9y agoExplain → -
dresscode
Scan websites CSP policies and visualise their vunlnerabilities from a dashboard
Python ★ 13 1y agoExplain → -
JBaah
HTTP Brute Forcer (Java replacement for SP's CrowBar).
Java ★ 12 9y agoExplain → -
casper
Casper is a tiny system tray application that can be used to view the invisible windows on your desktop.
C# ★ 12 9y agoExplain → -
DotNetHookerToolkit
No description.
C# ★ 11 3mo agoExplain → -
esp-vnc
Our fork of the esp-link firmware with a built in VNC server for passing input events to an AVR. Part of our Universal Serial aBUSe project.
C ★ 11 9y agoExplain → -
maltegolocal ⑂
Local Transform Wrapper for Maltego
Go ★ 11 10y agoExplain → -
metasploit ⑂
Metasploit things, modules, plugins, exploits
Ruby ★ 11 13y agoExplain → -
capchan
Solving CAPTCHA with Image Classification
Python ★ 10 1y agoExplain → -
berate_radius
Alpine hostapd-mana based RADIUS server
Shell ★ 10 3y agoExplain → -
neverevercookie
GUI for cleaning out evercookie persistence locations.
Java ★ 10 9y agoExplain → -
SpUD
SensePost Unified Data API (SPUD) is a wrapper for apps requiring use of the deprecated Google API.
C# ★ 10 9y agoExplain → -
SP-DNS-mine
Google DNS name / sub domain miner.
Perl ★ 10 9y agoExplain → -
glypeahead
Port scan through Glype proxies.
PHP ★ 9 9y agoExplain → -
ClashofSpamTitan
No description.
Python ★ 9 5y agoExplain → -
Manifestor
Android Manifest.xml tool
Python ★ 9 9y agoExplain → -
BilePublic
BiLE stands for Bi-directional Link Extraction. It is used in the footprinting process to find non-obvious relationships between different web sites.
Perl ★ 9 9y agoExplain → -
jcertchecker
JCertChecker is used to check HTTPS certificates.
Java ★ 8 9y agoExplain → -
finder
Finder.pl remotely checks IIS Servers for most of the methods used by WebDAV.
Perl ★ 8 9y agoExplain → -
wpswag
Create an OpenAPI/Swagger spec from a WordPress REST entry point.
Python ★ 7 9mo agoExplain → -
file-read-experiments
A few short scripts to look at the performance of various file read strategies.
Rust ★ 7 2y agoExplain → -
CarbanakCheck
Check squid logs for possible Carbanak malware.
Python ★ 7 11y agoExplain → -
MonSoen
Proxy Server network scanner and tunnelling tool.
Python ★ 7 9y agoExplain → -
desperate
No description.
Perl ★ 7 9y agoExplain → -
sconwar
a bring your own client programming game
Go ★ 6 1mo agoExplain → -
Scully
Scully is a client interface to MSSQL and MySQL database servers.
C# ★ 6 9y agoExplain → -
hash-cracker-apple-silicon ▣
Script to perform some hashcracking logic automagically
Python ★ 6 2y agoExplain → -
go
Seriously primitive portscanner using Squid proxy.
Perl ★ 6 9y agoExplain → -
gr-protocoldecoder
A simple way to decode a known protocol in GRC in real time.
CMake ★ 5 8y agoExplain → -
pudding
IDS evasion for web-based exploits via encoding built into a "proxy"
★ 5 9y agoExplain → -
w1f1.net
Wifi Hacking Tools Collection
HTML ★ 4 6y agoExplain → -
ctf-challenges
A collection of CTF challenges
CSS ★ 4 3y agoExplain → -
Decoyblues
PERL script to possibly kill firewall systems that actively block IP numbers if the system detects that the IP is scanning more than 20 ports on a network behind the firewall.
Perl ★ 4 9y agoExplain → -
unitools
For working with IIS servers with the Unicode bug
Perl ★ 4 9y agoExplain → -
mpdchecker
Confirm the presence of HTTP methods per directory.
Python ★ 4 9y agoExplain → -
hippydb ⑂
Hippy tool for interaction with "modern" databases.
JavaScript ★ 4 11y agoExplain → -
apngopt
A modification of the apngopt to aid in heap exploitation
HTML ★ 3 5y agoExplain → -
ppp_sycophant
Client Portion of EAP relay focused on PPP VPNs
C ★ 3 4y agoExplain → -
sensecon-2021-discord-bot
Discord Bot used for the SenseCon 2021 Challenges: https://sensepost.com/blog/2021/sensecon-2021-wargames-edition/
TypeScript ★ 3 4y agoExplain → -
sensedecode
Sensedecode includes 2 perl scripts which exploit the IIS url decoding bug.
Perl ★ 3 9y agoExplain → -
arbitrary-object-instantiation
A PHP, Arbitrary Object Instantiation Lab
PHP ★ 2 3y agoExplain → -
wasm-demos
A set of simple WebAssembly demos
HTML ★ 2 7y agoExplain → -
bvapi
Deprecated BroadView API Client - see https://bitbucket.org/checksec/bvapi
Python ★ 2 13y agoExplain → -
memunpin
memunpin
JavaScript ★ 1 2mo agoExplain → -
jash.sh
Polyglot Collection Website
Shell ★ 1 8y agoExplain → -
beacon-pipe-frame-proxy
A toy, C# Cobalt Strike Beacon TCP to Named Pipe Frame Proxy
C# ★ 1 2y agoExplain → -
sensecon_bot ▣
https://sensepost.com/blog/2020/szensecon-discord-bot/
Python ★ 0 5y agoExplain →
No repos match these filters.