Category: Open Source Tool

VulnLab: web vulnerability lab project

VulnLab: web vulnerability lab project

VulnLab A web vulnerability lab project developed by Yavuzlar. Vulnerabilities SQL Injection Cross-Site Scripting (XSS) Command Injection Insecure Direct Object References (IDOR) Cross-Site Request Forgery (CSRF) XML External Entity (XXE) Insecure Deserialization File Upload...

mx-takeover: detects misconfigured MX records

mx-takeover: detects misconfigured MX records

mx-takeover mx-takeover focuses on DNS MX records and detects misconfigured MX records. It currently supports three-technique. These are, MX domains that will expire soon Unregistered MX domains Domains that point to not currently in...

spraycharles: Low and slow password spraying tool

spraycharles Low and slow password spraying tool, designed to spray on an interval over a long period of time. Includes spraying plugins for Office365, OWA, EWS, Okta, ADFS, Cisco SSL VPN, Citrix Netscaler, Sonciwall, NTLM over HTTP, and SMB. Associated blog post by @sprocket_ed covering NTLM over HTTP,...

pywhisker: Python tool for Shadow Credentials attacks

PyWhisker pyWhisker is a Python equivalent of the original Whisker made by Elad Shamir and written in C#. This tool allows users to manipulate the msDS-KeyCredentialLink attribute of a target user/computer to obtain full control over that object. It’s...