Jackhammer - One Security vulnerability assessment/management tool to solve all the security team problems.
-
Updated
Mar 18, 2024 - Java
Jackhammer - One Security vulnerability assessment/management tool to solve all the security team problems.
Pen Test Report Generation and Assessment Collaboration
PETEP (PEnetration TEsting Proxy) is an open-source Java application for traffic analysis & modification using TCP/UDP proxies. PETEP is a useful tool for performing penetration tests of applications with various application protocols. ⚡
Burp Suite extension to decrypt/encrypt any encrypted traffic (AES/RSA/Encodings and more) with custom code in any language
A burp suite extension that reviews backup, old, temporary and unreferenced files on web server for sensitive information (OWASP WSTG-CONF-04, OTG-CONFIG-004)
As a bug hunter, are your bug bounty reports getting rejected because you don't use a "malicious" Proof of Concept (PoC) app to exploit the vulnerabilities? I've got you covered!
A burp suite extension that enumerates infrastructure and application admin interfaces (OTG-CONFIG-005)
Vulnerable Client-Server Application (VuCSA) is made for learning how to perform penetration tests of non-http thick clients. It is written in Java (with JavaFX graphical user interface) and contains multiple challenges including SQL injection, RCE, XML vulnerabilities and more.
Lucideus CyberGym is the internal CTF event we organise for our security professionals to grow and learn together. Now everyone can access the challenges that can be easily setup and start playing.
PyCript Websocket is now merge into https://github.com/Anof-cyber/PyCript, this repo is not available anymore.
Learning Penetration Testing of Android Applications
CVE-2022-41852 Proof of Concept (unofficial)
JAR, Java, and JSP shells that work on Linux OS, macOS, and Windows OS.
Burp Suite extension to passively scan for applications revealing server error messages
Burp extension to passively scan for applications revealing software version numbers
JSONPath extension for BurpSuite
Burp Suite extension for parsing Swagger web service definition files
A reinforced version of the Wavsep evaluation platform.
Termux-X 是一款基于 ZeroTermux 进行二次开发(二开)的增强版终端模拟器应用。它保留了 ZeroTermux 的强大功能,并在此基础上进行了深度定制与优化,旨在为移动端渗透测试人员和极客提供更便捷、更强大的操作环境。
🐧 The Linux Simulator
Add a description, image, and links to the penetration-testing topic page so that developers can more easily learn about it.
To associate your repository with the penetration-testing topic, visit your repo's landing page and select "manage topics."