pavetheway's starred repositories

Signal-Android

A private messenger for Android.

Language:KotlinLicense:AGPL-3.0Stargazers:25554Issues:897Issues:10829

nuclei

Fast and customizable vulnerability scanner based on simple YAML based DSL.

gitleaks

Protect and discover secrets using Gitleaks 🔑

trufflehog

Find, verify, and analyze leaked credentials

Language:GoLicense:AGPL-3.0Stargazers:15875Issues:169Issues:645

Signal-Desktop

A private messenger for Windows, macOS, and Linux.

Language:TypeScriptLicense:AGPL-3.0Stargazers:14581Issues:428Issues:5848

RustScan

🤖 The Modern Port Scanner 🤖

Language:RustLicense:GPL-3.0Stargazers:14371Issues:134Issues:248

ffuf

Fast web fuzzer written in Go

Signal-iOS

A private messenger for iOS.

Language:SwiftLicense:AGPL-3.0Stargazers:10791Issues:377Issues:3229

Signal-Server

Server supporting the Signal Private Messenger applications on Android, Desktop, and iOS

Language:JavaLicense:AGPL-3.0Stargazers:9178Issues:402Issues:0

miller

Miller is like awk, sed, cut, join, and sort for name-indexed data such as CSV, TSV, and tabular JSON

Language:GoLicense:NOASSERTIONStargazers:8916Issues:70Issues:659

sliver

Adversary Emulation Framework

Language:GoLicense:GPL-3.0Stargazers:8332Issues:149Issues:732

httpx

httpx is a fast and multi-purpose HTTP toolkit that allows running multiple probes using the retryablehttp library.

website-templates

150+ HTML5 Website Templates

can-i-take-over-xyz

"Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.

Language:PythonLicense:CC-BY-4.0Stargazers:4790Issues:126Issues:236

pacu

The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.

Language:PythonLicense:BSD-3-ClauseStargazers:4337Issues:110Issues:129

LinkFinder

A python script that finds endpoints in JavaScript files

Language:PythonLicense:MITStargazers:3663Issues:66Issues:81

cloudgoat

CloudGoat is Rhino Security Labs' "Vulnerable by Design" AWS deployment tool

Language:PythonLicense:BSD-3-ClauseStargazers:2920Issues:75Issues:106

windows_hardening

HardeningKitty and Windows Hardening Settings

Language:PowerShellLicense:MITStargazers:2335Issues:72Issues:60

subjack

Subdomain Takeover tool written in Go

Language:GoLicense:Apache-2.0Stargazers:1895Issues:48Issues:63

stratus-red-team

:cloud: :zap: Granular, Actionable Adversary Emulation for the Cloud

Language:GoLicense:Apache-2.0Stargazers:1784Issues:36Issues:185

shuffledns

MassDNS wrapper written in go to enumerate valid subdomains using active bruteforce as well as resolve subdomains with wildcard filtering and easy input-output support.

Language:GoLicense:GPL-3.0Stargazers:1303Issues:37Issues:80

TeamFiltration

TeamFiltration is a cross-platform framework for enumerating, spraying, exfiltrating, and backdooring O365 AAD accounts

Language:C#License:GPL-3.0Stargazers:1041Issues:11Issues:39

DumpsterDiver

Tool to search secrets in various filetypes.

Language:PythonLicense:MITStargazers:976Issues:31Issues:13

pdtm

ProjectDiscovery's Open Source Tool Manager

Language:GoLicense:MITStargazers:715Issues:20Issues:65

Spray365

Spray365 makes spraying Microsoft accounts (Office 365 / Azure AD) easy through its customizable two-step password spraying approach. The built-in execution plan features options that attempt to bypass Azure Smart Lockout and insecure conditional access policies.

Language:PythonLicense:MITStargazers:340Issues:8Issues:9

wpa_sycophant

Evil client portion of EAP relay attack

Language:CLicense:NOASSERTIONStargazers:188Issues:13Issues:5

edge

Recon tool for cloud provider attribution. Supports AWS, Azure, Google, Cloudflare, and Digital Ocean.

Language:GoLicense:NOASSERTIONStargazers:157Issues:6Issues:14

Omnispray

Modular Enumeration and Password Spraying Framework

Language:DockerfileStargazers:3Issues:1Issues:0