• Osv-scanner

    Vulnerability scanner written in Go. The OSV-Scanner assesses a project’s dependencies against the OSV database showing all vulnerabilities relating to the project. When run on a project, OSV-Scanner first determines all the dependencies that are in use by analyzing manifests, software bill of materials (SBOMs), and commit hashe

  • Pacu

    An AWS exploitation framework. The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.

  • PCredz

    A free and open-source tool for extracting different credential types from packet capture files. Pcredz includes support for a wide variety of protocols and logs all credentials to a single file for easy access.

  • PowerSploit

    A free and open-source penetration testing framework containing PowerShell scripts and modules. The PowerSploit toolkit contains exploits for code execution, script modification, data exfiltration, and more.

  • PowerZure

    PowerShell framework for Azure security. PowerZure is a PowerShell project created to assess and exploit resources within Microsoft’s cloud platform, Azure. PowerZure was created out of the need for a framework that can both perform reconnaissance and exploitation of Azure.

  • Puredns

    Puredns is a subdomain bruteforcing tool that can accurately filter out wildcard subdomains and DNS poisoned entries. It uses massdns, a powerful stub DNS resolver, to perform bulk lookups. 

  • Rainbowcrack

    A free and open-source hash cracker tool using rainbow tables. RainbowCrack is available for Windows and Linux and supports GPU acceleration using NVIDIA and AMD GPUs.

  • Reaver

    A free and open-source brute-force attack tool for WPS. Reaver takes between 4 and 10 hours on average to recover a plaintext WPA/WPA2 passphrase.

  • ReconFTW

    reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities

  • ReelPhish

    A free and open-source automated tool for two-factor authentication phishing. ReelPhish is developed by Mandiant and supports multi-page authentication techniques

  • REMnux

    REMnux is a Linux distribution designed for malware analysts, incident responders, and other security professionals to perform reverse engineering and analysis of malicious software. It provides a curated collection of tools and utilities specifically tailored for tasks like examining malware, analyzing network traffic, and extracting artifacts from various file formats. REMnux simplifies the setup of an environment dedicated to malware analysis on a Linux system.

  • retire.je 2

    Scanner detecting the use of JavaScript libraries with known vulnerabilities