CPH:SEC WAES at a Glance Doing HTB or other CTFs enumeration against targets with HTTP(S) can become...
Web Information Gathering
DumpTheGit DumpTheGit searches through public repositories to find sensitive information uploaded to the Github repositories. The tool...
LiveTargetsFinder: automating the usage of MassDNS, Masscan and nmap to filter out unreachable hosts
LiveTargetsFinder: automating the usage of MassDNS, Masscan and nmap to filter out unreachable hosts
LiveTargetsFinder Generates lists of live hosts and URLs for targeting, automating the usage of Massdns, Masscan, and...
HostInjector Multithreaded Host Header Redirection Attack Scanner Download git clone https://github.com/xyele/hostinjector.git Use usage: hostinjector.py [-h] –list LIST...
Scavenger Just the code of my OSINT bot searching for sensitive data leaks on different paste sites....
Ultimate Facebook Scraper (UFS) Tooling that automates your social media interactions to collect posts, photos, videos, friends, followers and...
Recsech – Web Reconnaissance Tools Recsech is a tool for doing Footprinting and Reconnaissance on the target...
WPintel Chrome extension designed for WordPress Vulnerability Scanning and information gathering! Features Detect the WordPress version Detect...
NTLM Challenger ntlm_challenger will send an NTLM negotiate message to a provided HTTP endpoint that accepts NTLM...
Dirstalk Dirstalk is a multi-threaded application designed to brute force paths on web servers. The tool contains...
ITWSV- Integrated Tool for Web Security Vulnerability. ITWSV is an automated penetration testing tool that performs information...
Scrummage Scrummage is an OSINT tool that centralizes your OSINT scans, leveraging powerful yet simple OSINT sites,...
PEPE – Post-Exploitation Pastebin Emails Collect information about leaked email addresses from Pastebin The script parses Pastebin...
Domainker This tool for bug bounty hunters to help them automate the boring tasks and find some...
dnsgen (DNS generator) This tool generates a combination of domain names from the provided input. Combinations are...