Frank Leitner's starred repositories

SecLists

SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.

dnSpy

.NET debugger and assembly editor

Language:C#Stargazers:26222Issues:991Issues:0

ILSpy

.NET Decompiler with support for PDB generation, ReadyToRun, Metadata (&more) - cross-platform!

bash-it

A community Bash framework.

Language:ShellLicense:MITStargazers:14204Issues:325Issues:634

ffuf

Fast web fuzzer written in Go

LaZagne

Credentials recovery project

Language:PythonLicense:LGPL-3.0Stargazers:9388Issues:412Issues:471

hacktricks

Welcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and news.

Language:PythonLicense:NOASSERTIONStargazers:8680Issues:225Issues:85

fuzzdb

Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.

ysoserial

A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.

Language:JavaLicense:MITStargazers:7595Issues:213Issues:102

pull

🤖 Keep your forks up-to-date via automated PRs

Language:JavaScriptLicense:MITStargazers:6062Issues:64Issues:182

wfuzz

Web application fuzzer

Language:PythonLicense:GPL-2.0Stargazers:5837Issues:169Issues:197

lsyncd

Lsyncd (Live Syncing Daemon) synchronizes local directories with remote targets

Language:LuaLicense:GPL-2.0Stargazers:5690Issues:188Issues:636

tplmap

Server-Side Template Injection and Code Injection Detection and Exploitation Tool

Language:PythonLicense:GPL-3.0Stargazers:3714Issues:82Issues:78

waybackurls

Fetch all the URLs that the Wayback Machine knows about for a domain

ysoserial.net

Deserialization payload generator for a variety of .NET formatters

Language:C#License:MITStargazers:3147Issues:76Issues:62

smtp4dev

smtp4dev - the fake smtp email server for development and testing

Language:C#License:BSD-3-ClauseStargazers:2999Issues:63Issues:235

pwndoc

Pentest Report Generator

Language:JavaScriptLicense:MITStargazers:2185Issues:49Issues:303

genie

A quick way into a systemd "bottle" for WSL

Language:PythonLicense:NOASSERTIONStargazers:1853Issues:34Issues:216

SharpUp

SharpUp is a C# port of various PowerUp functionality.

Language:C#License:NOASSERTIONStargazers:1201Issues:44Issues:5

legion

Legion is an open source, easy-to-use, super-extensible and semi-automated network penetration testing tool that aids in discovery, reconnaissance and exploitation of information systems.

Language:PythonLicense:GPL-3.0Stargazers:1002Issues:43Issues:170

golismero

GoLismero - The Web Knife

Language:PythonLicense:GPL-2.0Stargazers:858Issues:86Issues:45

liffy

Local file inclusion exploitation tool

Language:PythonLicense:GPL-3.0Stargazers:758Issues:13Issues:15

hashes

Magic hashes – PHP hash "collisions"

WHP

Micro$oft Windows Hacking Pack

Language:PythonLicense:WTFPLStargazers:511Issues:27Issues:0

Vanquish

Vanquish is Kali Linux based Enumeration Orchestrator. Vanquish leverages the opensource enumeration tools on Kali to perform multiple active information gathering phases.

Language:PythonLicense:MITStargazers:500Issues:40Issues:10

git-clone-init

Automatic setup of user identity (user.email / user.name) on git clone

Language:ShellLicense:MITStargazers:175Issues:3Issues:2

bashdot

Minimalist dotfile management framework.

Language:ShellLicense:MITStargazers:102Issues:4Issues:2

ruby-shells

Simple forward and reverse shells that can be compiled and used on pen tests to avoid AV and used to get better access.

Language:RubyStargazers:28Issues:3Issues:0

factorio-sites

A mono repo for the factorio-blueprints project.

Language:TypeScriptLicense:AGPL-3.0Stargazers:23Issues:3Issues:4