Exploitation Tools

997 tools
houndsploit
houndsploit
Open Source Exploitation

An advanced graphical search engine for Exploit-DB

how-to-exploit-a-double-free
how-to-exploit-a-double-free
Free Exploitation

How to exploit a double free vulnerability in 2021. Use After Free for Dummies

htb-writeups
htb-writeups
Open Source Exploitation Post-Exploitation

The most comprehensive Hack The Box writeup collection - 500+ machines, 400+ challenges, interactive knowledge graph, skill trees, attack pa…

httpworker
httpworker
Free Exploitation Post-Exploitation

A Flask-based HTTP(S) command and control (C2) framework with a web interface. Custom Windows EXE/DLL implants written in C++. For education…

hyperpwn
hyperpwn
Open Source Exploitation Reverse Engineering

A hyper plugin to provide a flexible GDB GUI frontend with the help of GEF, pwndbg or peda

hypnus
hypnus
Open Source Evasion Exploitation

Library for execution obfuscation, designed to protect memory regions during inactivity or sleep cycles. It leverages thread pool timers, wa…

IDOR-Forge
IDOR-Forge
Open Source Exploitation Web Application

IDOR Forge is an advanced and versatile tool designed to detect Insecure Direct Object Reference (IDOR) vulnerabilities in web applications.

Impacket
Impacket
Open Source Kali Exploitation Post-Exploitation

Collection of Python classes for working with network protocols. Includes tools for SMB, MSRPC, LDAP, Kerberos, and more. Used for Pass-the-…

Impost3r
Impost3r
Open Source Exploitation

👻Impost3r -- A linux password thief

IndicatorOfCanary
IndicatorOfCanary
Open Source Exploitation

The Indicator of Canary is a collection of PoCs from research on identifying canaries in various file formats. It focuses on identifying kno…

Information-Security-Tasks
Information-Security-Tasks
Free Exploitation Forensics

This repository is created only for infosec professionals whom work day to day basis to equip ourself with uptodate skillset, We can daily c…

Infosec_Reference
Infosec_Reference
Open Source Exploitation Forensics

An Information Security Reference That Doesn't Suck; https://rmusser.net/git/admin-2/Infosec_Reference for non-MS Git hosted version.

infosec-events
infosec-events
Free Exploitation

List of past and future infosec related events.

Infosec-Notes
Infosec-Notes
Free Exploitation

Notes from various sources for preparing to take the OSCP, Capture the Flag challenges, and Hack the Box machines.

InfraGuard
InfraGuard
Open Source Exploitation

InfraGuard is a Command & Control Redirection Proxy and Manager which protects your Red Team Infrastructure against threat attribution

injectopi
injectopi
Open Source Exploitation Reverse Engineering

A set of tutorials about code injection for Windows.

InlineWhispers3
InlineWhispers3
Open Source Exploitation

Tool for working with Indirect System Calls in Cobalt Strike's Beacon Object Files (BOF) using SysWhispers3 for EDR evasion

instatracker
instatracker
Open Source Exploitation Reconnaissance

📸 an Instagram tracking script that logs any changes to an Instagram account (followers, following, posts, and bio) written in Python.

InternalAllTheThings
InternalAllTheThings
Free Exploitation

Active Directory and Internal Pentest Cheatsheets

inthewilddb
inthewilddb
Open Source Exploitation

Hourly updated database of exploit and exploitation reports

INtrack
INtrack
Free Exploitation Reconnaissance

A flexible internet crawler used for scanning technologies, instances and vulnerabilities worldwide across the internet.

inventory
inventory
Open Source Exploitation Reconnaissance

Asset inventory of over 800 public bug bounty programs.

isoalloc
isoalloc
Open Source Exploitation

A general purpose memory allocator that implements an isolation security strategy to mitigate memory safety issues while maintaining good pe…

janusec
janusec
Free Exploitation Web Application

JANUSEC Application Gateway provides secure access, including reverse proxy, K8S Ingress Controller, Automatic ACME Certificate, WAF, 5-Seco…