Open-Source Phishing Toolkit
☆14,099Sep 23, 2024Updated last year
Alternatives and similar repositories for gophish
Users that are interested in gophish are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Phishing Campaign Toolkit☆2,569Updated this week
- Standalone man-in-the-middle attack framework used for phishing login credentials along with session cookies, allowing for the bypass of …☆15,444Jun 10, 2026Updated last month
- Six Degrees of Domain Admin☆10,598Mar 2, 2026Updated 5 months ago
- Adversary Emulation Framework☆11,645Updated this week
- A swiss army knife for pentesting networks☆9,157Dec 6, 2023Updated 2 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- PowerSploit - A PowerShell Post-Exploitation Framework☆13,090Aug 17, 2020Updated 5 years ago
- Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabl…☆30,361Updated this week
- Impacket is a collection of Python classes for working with network protocols.☆15,974Updated this week
- FiercePhish is a full-fledged phishing framework to manage all phishing engagements. It allows you to track separate phishing campaigns,…☆1,435Jan 9, 2024Updated 2 years ago
- Nishang - Offensive PowerShell for red team, penetration testing and offensive security.☆10,035Apr 25, 2024Updated 2 years ago
- Phishing Tool & Information Collector☆4,832May 20, 2026Updated 2 months ago
- Empire is a PowerShell and Python post-exploitation agent.☆7,861Jan 19, 2020Updated 6 years ago
- A little tool to play with Windows security☆21,756Apr 17, 2026Updated 3 months ago
- Merlin is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in golang.☆5,589Apr 17, 2025Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Pupy is an opensource, cross-platform (Windows, Linux, OSX, Android) C2 and post-exploitation framework written in python and C☆9,001Mar 22, 2024Updated 2 years ago
- SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in …☆72,659Updated this week
- In-depth attack surface mapping and asset discovery☆14,943Jul 19, 2026Updated 2 weeks ago
- Covenant is a collaborative .NET C2 framework for red teamers.☆4,719Jul 18, 2024Updated 2 years ago
- Fast passive subdomain enumeration tool.☆14,143Updated this week
- A list of useful payloads and bypass for Web Application Security and Pentest/CTF☆79,829Updated this week
- E-mails, subdomains and names Harvester - OSINT☆16,978Updated this week
- Small and highly portable detection tests based on MITRE's ATT&CK.☆12,366Updated this week
- Fast web fuzzer written in Go☆16,500Jul 19, 2026Updated 2 weeks ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- MailSniper is a penetration testing tool for searching through email in a Microsoft Exchange environment for specific terms (passwords, i…☆3,269Aug 7, 2025Updated last year
- Web path scanner☆14,574Jul 28, 2026Updated last week
- The Swiss Army knife for 802.11, BLE, HID, CAN-bus, IPv4 and IPv6 networks reconnaissance and MITM attacks.☆19,742Jul 31, 2026Updated last week
- The Social-Engineer Toolkit (SET) repository from TrustedSec - All new versions of SET will be deployed here.☆15,162Jun 4, 2026Updated 2 months ago
- Wiki to collect Red Team infrastructure hardening resources☆4,512Oct 1, 2025Updated 10 months ago
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆9,006Dec 4, 2025Updated 8 months ago
- Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv…☆6,533Jun 10, 2026Updated last month
- List of Awesome Red Teaming Resources☆8,047Dec 28, 2023Updated 2 years ago
- Automated penetration testing & attack surface management platform. Recon, scan, exploit, report — 600+ exploits, 90+ integrations, 10K+ …☆10,730Jul 4, 2026Updated last month
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- The Havoc Framework☆8,510Dec 18, 2025Updated 7 months ago
- Modlishka. Reverse Proxy.☆5,377Jul 3, 2026Updated last month
- EyeWitness is designed to take screenshots of websites, provide some server header info, and identify default credentials if possible.☆5,812Jan 5, 2026Updated 7 months ago
- Trying to tame the three-headed dog.☆5,118May 21, 2026Updated 2 months ago
- PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)☆20,275Updated this week
- This repository contains cutting-edge open-source security tools (OST) for a red teamer and threat hunter.☆10,598May 7, 2026Updated 3 months ago
- Credentials recovery project☆10,952Sep 18, 2025Updated 10 months ago