GoSecure
GoSecure
pyrdp
RDP monster-in-the-middle (mitm) and library for Python with the ability to watch connections live or after the fact
malboxes
Builds malware analysis Windows VMs so that you don't have to.
php7-opcache-override
Security-related PHP7 OPcache abuse tools and demo
dtd-finder
List DTDs and generate XXE payloads using those local DTDs.
csp-auditor
Burp and ZAP plugin to analyse Content-Security-Policy headers or generate template CSP configuration from crawling a Website
template-injection-workshop
Workshop on Template Injection (6 exercises) covering Twig, Jinja2, Tornado, Velocity and Freemaker engines.
DLLPasswordFilterImplant
DLL Password Filter Implant with Exfiltration Capabilities
pywsus
Standalone implementation of a part of the WSUS spec. Built for offensive security purposes.
break-fast-serial
A proof of concept that demonstrates asynchronous scanning for Java deserialization bugs
ldap-scanner
Checks for signature requirements over LDAP