CookieCatcher is an open source application which was created to assist in the exploitation of XSS (Cross Site Scripting) vulnerabilities ...
[Resolver v1.0.9] The reverse/bruteforce DNS lookup
Resolver is a windows based tool which designed to preform a reverse DNS Lookup for a given IP address or for a range of IP’s in order to fi...
[Process Magic v2.0] Command-line Tool to Hide Windows Application or Launch New Process in Hidden Mode
Process Magic is the command-line tool to Hide any Windows application or launch new application in Hidden or Invisible mode. In addition t...
[Wi-fEye] Automated Network Testing Tool
Wi-fEye is an automated wirelress penetration testing tool written in python , its designed to simplify common attacks that can be perfo...
[Linux Exploit Suggester] Grab the Linux Operating Systems release version, and return a suggestive list of possible exploits
Linux Exploit Suggester; based on operating system release number. This program run without arguments will perform a 'uname -r' to g...
[Hidden File Finder v2.5] Tool to Find and Unhide/Remove all the Hidden Files
Hidden File Finder is the free software to quickly scan and discover all the Hidden files on your Windows system. It performs swift multi ...
[oclHashcat-plus v0.15] Advanced Password Recovery
This version is the result of over 6 months of work, having modified 618,473 total lines of source code. Before we go into the details of th...
[Network Password Decryptor v6.0] Windows Network Password Recovery Tool
Network Password Decryptor is the free tool to instantly recover network authentication passwords. In addition to the network authe...
11 Firefox Add-ons to Hack and PenTest
1. Tamper Data Tamper data is an great tool to to view and modify HTTP/HTTPS headers and post parameters. We can alter each request going f...
[GoLismero v2.0] The Web Knife
GoLismero is an open source framework for security testing. It's currently geared towards web security, but it can easily be expanded t...
[Router Password Decryptor] Tool to Recover Login/PPPoE/WEP/WPA/WPA2 Passwords from Router/Modem Config file
Router Password Decryptor is the FREE tool to instantly recover internet login/PPPoE authentication passwords, Wireless WEP keys, WPA/WPA...
[Yersinia v0.7.3] The network protocols assessment tool
Yersinia is a network tool designed to take advantage of some weakeness in different network protocols. It pretends to be a solid framework ...
[Nmap v6.40] Free Security Scanner For Network Exploration & Security Audits
Nmap (“ Network Mapper ”) is a free and open source ( license ) utility for network discovery and security auditing. Many systems and netwo...
[Xenotix XSS Exploit Framework v4] Advanced Cross Site Scripting (XSS) vulnerability detection and exploitation framework
OWASP Xenotix XSS Exploit Framework is an advanced Cross Site Scripting (XSS) vulnerability detection and exploitation framework. It provid...
[ZMap v1.0.3] The Internet Scanner
ZMap is an open-source network scanner that enables researchers to easily perform Internet-wide network studies. With a single machine and a...
[fuzzdb] Attack and Discovery Pattern Database for Application Fuzz Testing
fuzzdb aggregates known attack patterns, predictable resource names, server response messages, and other resources like web shells into the...
[The Backdoor Factory] Backdoors win32 PE files
Backdoors win32 PE files, to continue normal file execution (if the shellcode supports it), by patching the exe/dll directly. Some executab...
[Malcom] Malware Communication Analyzer
Malcom is a tool designed to analyze a system's network communication using graphical representations of network traffic. This comes ha...
[Vulscan] Module which enhances nmap to a vulnerability scanner
Vulscan is a module which enhances nmap to a vulnerability scanner. The nmap option -sV enables version detection per service which is used...
[LinEnum] Scripted Local Linux Enumeration & Privilege Escalation Checks
High-level summary of the checks/tasks performed by LinEnum: Kernel and distribution release details System Information: Hostname Networkin...
[I2P] Anonymizing Network
I2P is an anonymizing network, offering a simple layer that identity-sensitive applications can use to securely communicate. All data is wr...
[Tunna Framework] Tool designed to bypass firewall restrictions on remote webservers
Tunna is a set of tools which will wrap and tunnel any TCP communication over HTTP. It can be used to bypass network restrictions in fully...
[Introspy] Monitor app in your iDevice
The Problem In 2013, assessing the security of iOS applications still involves a lot of manual, time-consuming tasks - especially when per...
[Raft v3.0.1] Response Analysis and Further Testing Tool
Not an inspection proxy RAFT is a testing tool for the identification of vulnerabilities in web applications. RAFT is a suite of tools t...
[The Burp SessionAuth] Extension for Detection of Possible Privilege escalation vulnerabilities
Normally a web application should identify a logged in user by data which is stored on the server side in some kind of session storage. Howe...