Follow along with the video below to see how to install our site as a web app on your home screen.
Note: This feature may not be available in some browsers.
Earn real money by being active: Hello Guest, earn real money by simply being active on the forum — post quality content, get reactions, and help the community. Once you reach the minimum credit amount, you’ll be able to withdraw your balance directly. Learn how it works.
Accenture made a tool called Spartacus, which finds DLL hijacking opportunities on Windows. Using Spartacus as a starting point, we created Crassus to extend Windows privilege escalation finding capabilities beyond simply looking for missing files. The ACLs used by files and directories of...
What the heck is a ferox anyway?
Ferox is short for Ferric Oxide. Ferric Oxide, simply put, is rust. The name rustbuster was taken, so I decided on a variation.
What’s it do tho?
feroxbuster is a tool designed to perform Forced Browsing.
Forced browsing is an attack where the aim is to...
SubFinder is a subdomain discovery tool that uses various techniques to discover massive amounts of subdomains for any target. It has been aimed at a successor to the sublist3r project. SubFinder uses Passive Sources, Search Engines, Pastebin, Internet Archives, etc to find subdomains, and then...
Slitheris Network Discovery – A Premium IP Scanner for Windows.
Credential-free and Agentless Windows OS Detection & Fingerprinting
The vast majority of network scanning software packages require some type of credentialed access to remote devices to detect operating systems. However, using...
Spartacus is utilising the SysInternals Process Monitor and is parsing raw PML log files. You can leave ProcMon running for hours and discover 2nd and 3rd level (ie an app that loads another DLL that loads yet another DLL when you use a specific feature of the parent app) DLL Hijacking...
Dismap positioning is an asset discovery and identification tool; its characteristic function is to quickly identify Web fingerprint information and locate asset types. Assist the red team to quickly locate the target asset information, and assist the blue team to find suspected vulnerabilities...
Dismap – Asset discovery and identification tool
Dismap positioning is an asset discovery and identification tool; its characteristic function is to quickly identify Web fingerprint information and locate asset types. Assist the red team to quickly locate the target asset information, and...
A passive reconnaissance tool for known URLs discovery – it gathers a list of URLs passively using various online sources.
Features
Collect known URLs:
Fetches from AlienVault’s OTX, Common Crawl, URLScan, Github, and the Wayback Machine.
Fetches disallowed paths from...
Yet another content discovery tool written in python.
What makes this tool different than others:
It is written to work asynchronously which allows reaching to maximum limits. So it is very fast.
Calibration mode, applies filters on its own
Has bunch of flags that helps you fuzz in...
Yet another content discovery tool is written in python.
What makes this tool different than others:
It is written to work asynchronously which allows reaching to maximum limits. So it is very fast.
Calibration mode applies filters on its own
Has a bunch of flags that help you fuzz...
Tachyon is a Fast Multi-Threaded Web Discovery Tool.
The main goal of it is to help webadmins find leftover files in their site installation, permission problems and web server configuration errors. It is not a vulnerability scanner or a web crawler.
Features
It provides:
Plugin support...
What the heck is a ferox anyway?
Ferox is short for Ferric Oxide. Ferric Oxide, simply put, is rust. The name rustbuster was taken, so I decided on a variation.
What’s it do tho?
feroxbuster is a tool designed to perform Forced Browsing.
Forced browsing is an attack where the aim is to...
Trishul
Trishul is an automated vulnerability finding Burp Extension. Built with Jython supports real-time vulnerability detection in multiple requests with user-friendly output. This tool was made to supplement testing where results have to be found in a limited amount of time. Currently, the...
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.