Top-rated tools trusted by the cybersecurity community
A Go tool designed to help identify WAF bypasses using passive techniques, such as: SPF records and DNS history. By default, Unwaf will check SPF records.
A tool for scanning public or private AMIs for sensitive files and secrets.
Password spraying tool, uses FireProx APIs to rotate IP addresses, stay anonymous, and beat throttling
WonkaVision is a proof of concept (POC) tool to analyze Kerberos tickets and attempt to determine if they are forged.
Find tools organized by testing methodology and use case
Videos, podcasts, and articles about penetration testing