GTFOBins is a curated list of Unix-like executables that can be used to bypass local security restrictions in misconfigured systems.
☆12,816Mar 3, 2026Updated 2 weeks ago
Alternatives and similar repositories for GTFOBins.github.io
Users that are interested in GTFOBins.github.io are comparing it to the libraries listed below
Sorting:
- Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)☆8,384Updated this week
- PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)☆19,539Updated this week
- Scripted Local Linux Enumeration & Privilege Escalation Checks☆7,860Sep 6, 2023Updated 2 years ago
- A list of useful payloads and bypass for Web Application Security and Pentest/CTF☆76,106Updated this week
- Impacket is a collection of Python classes for working with network protocols.☆15,560Updated this week
- Monitor linux processes without root permissions☆5,927Mar 1, 2026Updated 3 weeks ago
- Linux privilege escalation auditing tool☆6,420Feb 19, 2026Updated last month
- Nishang - Offensive PowerShell for red team, penetration testing and offensive security.☆9,802Apr 25, 2024Updated last year
- SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in …☆69,539Updated this week
- Linux enumeration tool for pentesting and CTFs with verbosity levels☆3,867Dec 25, 2023Updated 2 years ago
- Fast web fuzzer written in Go☆15,750Apr 24, 2025Updated 10 months ago
- A swiss army knife for pentesting networks☆9,100Dec 6, 2023Updated 2 years ago
- PowerSploit - A PowerShell Post-Exploitation Framework☆12,912Aug 17, 2020Updated 5 years ago
- Trying to tame the three-headed dog.☆4,920Nov 14, 2025Updated 4 months ago
- Six Degrees of Domain Admin☆10,558Mar 2, 2026Updated 2 weeks ago
- Welcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and n…☆11,050Updated this week
- Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv…☆6,383Jan 26, 2026Updated last month
- CTF framework and exploit development library☆13,315Mar 5, 2026Updated 2 weeks ago
- Adversary Emulation Framework☆10,838Mar 15, 2026Updated last week
- Seatbelt is a C# project that performs a number of security oriented host-survey "safety checks" relevant from both offensive and defensi…☆4,504Jan 10, 2025Updated last year
- A little tool to play with Windows security☆21,334May 11, 2025Updated 10 months ago
- Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabl…☆27,492Updated this week
- AutoRecon is a multi-threaded network reconnaissance tool which performs automated enumeration of services.☆5,943Jan 28, 2026Updated last month
- Windows Exploit Suggester - Next Generation☆4,789Mar 13, 2026Updated last week
- A tool to perform Kerberos pre-auth bruteforcing☆3,279Aug 20, 2024Updated last year
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆8,812Dec 4, 2025Updated 3 months ago
- In-depth attack surface mapping and asset discovery☆14,256Mar 13, 2026Updated last week
- Directory/File, DNS and VHost busting tool written in Go☆13,532Updated this week
- This tool compares a targets patch levels against the Microsoft vulnerability database in order to detect potential missing patches on th…☆4,179May 11, 2023Updated 2 years ago
- Small and highly portable detection tests based on MITRE's ATT&CK.☆11,688Mar 13, 2026Updated last week
- Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.☆5,085Feb 25, 2026Updated 3 weeks ago
- Server-Side Template Injection and Code Injection Detection and Exploitation Tool☆4,125Apr 21, 2024Updated last year
- JAWS - Just Another Windows (Enum) Script☆1,930Apr 19, 2021Updated 4 years ago
- RSA attack tool (mainly for ctf) - retrieve private key from weak public key and/or uncipher data☆6,838Mar 2, 2026Updated 2 weeks ago
- Covenant is a collaborative .NET C2 framework for red teamers.☆4,641Jul 18, 2024Updated last year
- A sugared version of RottenPotatoNG, with a bit of juice, i.e. another Local Privilege Escalation tool, from a Windows Service Accounts t…☆2,744Dec 18, 2021Updated 4 years ago
- This repository contains cutting-edge open-source security tools (OST) for a red teamer and threat hunter.☆10,186Sep 29, 2025Updated 5 months ago
- A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.☆6,541Jan 18, 2026Updated 2 months ago
- windows-kernel-exploits Windows平台提权漏洞集合☆8,617Jun 11, 2021Updated 4 years ago