High-volume Burp HTTP fuzzer.
Tools that exploit
Trigger known vulnerabilities or weaknesses to gain access.
91 tools indexed
Defeat Windows User Account Control.
Natural-language AI agent that runs the full pentest workflow
Rogue access point framework.
Auto-exploit BloodHound paths.
Swiss army knife for network attacks.
Encrypted C2 over DNS.
Intranet comprehensive scanner.
Test and exploit JWT vulnerabilities.
Windows credential extraction.
Turn x86/x64 shellcode into polymorphic position-independent VMs.
Generate NTLMv2 hash theft files.
ptai
—AI pentest tool that re-runs every exploit to verify it.
GDB plug-in for exploit dev and RE.
CTF framework for exploit dev.
SOCKS proxy through a web shell.
Automatic SQL injection and database takeover.
w3af
—Web application attack and audit framework.
Java deserialization payload generator.