OWASP ZSC – Shellcode/Obfuscate Code Generator
OWASP ZSC is an open source software in Python language which lets you generate customized shellcodes and convert scripts to an obfuscated script. This software can be run on Windows/Linux/OSX under...
View ArticleFast and More Efficient Stateless SYN Scanner And Banner Grabber: PolarBearScan
polarbearscan is an attempt to do faster and more efficient banner grabbing and port scanning. It combines two different ideas which hopefully will make it somewhat worthy of your attention and time....
View Articleoutis – Custom Remote Administration Tool (RAT)
outis is a custom Remote Administration Tool (RAT) or something like that. Think Meterpreter or Empire-Agent. However, the focus of this tool is neither an exploit toolkit (there are no exploits) nor...
View Articlednsenum – Multithreaded perl script to enumerate DNS information
Multithreaded perl script to enumerate DNS information of a domain and to discover non-contiguous ip blocks. OPERATIONS: Get the host’s addresse (A record). Get the namservers (threaded). Get the MX...
View ArticleVPNPivot – Explore Internal Networks
Sometime we do external penetration testing and when we compromise the remote target we would like to explore the internal network behind and getting such compromise like owning Active directory,...
View ArticleTCPCopy – A TCP Stream Replay Tool
TCPCopy is a TCP stream replay tool to support real testing of Internet server applications. Description Although the real live flow is important for the test of Internet server applications, it is...
View ArticleLFiFreak – An automated LFi Exploiter with Bind/Reverse Shells
LFiFreak is a tool for exploiting local file inclusions using PHP Input, PHP Filter and Data URI methods Features Works with Windows, Linux and OS X Includes bind and reverse shell for both Windows and...
View Articleclusterd – Application Server Attack Toolkit
clusterd is an open source application server attack toolkit. Born out of frustration with current fingerprinting and exploitation methods, clusterd automates the fingerprinting, reconnaissance, and...
View ArticleSCUTUM – Linux Automatic ARP (TCP / UDP / ICMP) Firewall
SCUTUM – Linux Automatic ARP (TCP / UDP / ICMP) Firewall Current Version Change log: Added Self-Upgrading Function, now users can execute self-upgrading with $ sudo scutum –upgrade Added AVALON...
View Articlemacphish – Office for Mac Macro Payload Generator
Office for Mac Macro Payload Generator. Attack vectors There are 4 attack vectors available: beacon creds meterpreter meterpreter-grant For the ‘creds’ method, macphish can generate the Applescript...
View Article