The OWASP ZAP core project
The Pentester’s Companion
Privilege Escalation Awesome Scripts SUITE
Find vulnerabilities, misconfigurations, secrets, SBOM in containers
The AWS exploitation framework, designed for testing security
Lightweight service virtualization/ API simulation / API mocking tool
Security- and exploitation-oriented utilities and proof-of-concepts
Complete Mandiant Offensive VM (Commando VM)
This Ansible collection provides battle tested hardening
Automatic SQL injection and database takeover tool
Malicious traffic detection system
API automation and load testing framework
Gateway service providing dynamic routing, monitoring and more
Gives you one-liners that aids in penetration testing operations
Fully featured and community-driven hacking environment
Make security testing of K8s, Docker, and Containerd easier
Wapiti is a web-application vulnerability scanner
Santetin is a website stress test and DDOS simulation tool
A multi-threaded, multi-database tcp-based database insertion app.
Infection Monkey is a automated security testing tool for networks
BlackBuntu Linux
Static Application Security Testing (SAST) engine
Advanced Network Packet Generator